CVE-2010-0545
N/A
N/A
Summary
The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an "Apply to enclosed items" action, which allows local users to bypass intended access restrictions via normal filesystem operations.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html
- http://www.vupen.com/english/advisories/2010/1481
- http://www.securityfocus.com/bid/40871
- http://securitytracker.com/id?1024103
- http://support.apple.com/kb/HT4188
- http://secunia.com/advisories/40220
References
- http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html
- http://www.vupen.com/english/advisories/2010/1481
- http://www.securityfocus.com/bid/40871
- http://securitytracker.com/id?1024103
- http://support.apple.com/kb/HT4188
- http://secunia.com/advisories/40220
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.