Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2004-0824

Overview

Vulnerability Score 2.1 2.1
CVE Id CVE-2004-0824
Last Modified 05 Sep 2008 04:39:31
Published 31 Dec 2004 12:00:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2004-0824

Summary

PPPDialer for Mac OS X 10.2.8 through 10.3.5 allows local users to overwrite system files via a symlink attack on PPPDialer log files.

Vulnerable Systems

Operating System

  • Apple Mac Os X 10.2.8

  • Apple Mac Os X 10.3

  • Apple Mac Os X 10.3.1

  • Apple Mac Os X 10.3.2

  • Apple Mac Os X 10.3.3

  • Apple Mac Os X 10.3.4

  • Apple Mac Os X 10.3.5


References

XF - macosx-pppdialer-symlink(17298)

BID - 11139

APPLE - APPLE-SA-2004-09-07

AUSCERT - ESB-2004.0559

SECTRACK - 1011175

CIAC - O-212


Last Updated: 27 May 2016 10:38:46