Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2005-1727

Overview

Vulnerability Score 3.7 3.7
CVE Id CVE-2005-1727
Last Modified 05 Sep 2008 04:49:54
Published 08 Jun 2005 12:00:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity HIGH
Authentication NONE

CVE-2005-1727

Summary

Apple Mac OS X 10.4.x up to 10.4.1 sets insecure world- and group-writable permissions for the (1) system cache folder and (2) Dashboard system widgets, which allows local users to conduct unauthorized file operations via "file race conditions."

Vulnerable Systems

Operating System

  • Apple Mac Os X Server 10.4

  • Apple Mac Os X Server 10.4.1


References

APPLE - APPLE-SA-2005-06-08


Last Updated: 27 May 2016 10:40:16