Lucene search

K
cveMitreCVE-2005-2714
HistoryMar 02, 2006 - 7:00 p.m.

CVE-2005-2714

2006-03-0219:00:00
CWE-59
mitre
web.nvd.nist.gov
25
cve-2005-2714
overwrite files
symlink attack
mac os x
security vulnerability

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.3

Confidence

High

EPSS

0

Percentile

9.5%

passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to overwrite arbitrary files via a symlink attack on the .pwtmp.[PID] temporary file.

Affected configurations

Nvd
Node
applemac_os_xMatch10.3
OR
applemac_os_xMatch10.3.1
OR
applemac_os_xMatch10.3.2
OR
applemac_os_xMatch10.3.3
OR
applemac_os_xMatch10.3.4
OR
applemac_os_xMatch10.3.5
OR
applemac_os_xMatch10.3.6
OR
applemac_os_xMatch10.3.7
OR
applemac_os_xMatch10.3.8
OR
applemac_os_xMatch10.3.9
OR
applemac_os_xMatch10.4
OR
applemac_os_xMatch10.4.1
OR
applemac_os_xMatch10.4.2
OR
applemac_os_xMatch10.4.3
OR
applemac_os_xMatch10.4.4
OR
applemac_os_xMatch10.4.5
OR
applemac_os_x_serverMatch10.3
OR
applemac_os_x_serverMatch10.3.1
OR
applemac_os_x_serverMatch10.3.2
OR
applemac_os_x_serverMatch10.3.3
OR
applemac_os_x_serverMatch10.3.4
OR
applemac_os_x_serverMatch10.3.5
OR
applemac_os_x_serverMatch10.3.6
OR
applemac_os_x_serverMatch10.3.7
OR
applemac_os_x_serverMatch10.3.8
OR
applemac_os_x_serverMatch10.3.9
OR
applemac_os_x_serverMatch10.4
OR
applemac_os_x_serverMatch10.4.1
OR
applemac_os_x_serverMatch10.4.2
OR
applemac_os_x_serverMatch10.4.3
OR
applemac_os_x_serverMatch10.4.4
OR
applemac_os_x_serverMatch10.4.5
VendorProductVersionCPE
applemac_os_x10.3cpe:2.3:o:apple:mac_os_x:10.3:*:*:*:*:*:*:*
applemac_os_x10.3.1cpe:2.3:o:apple:mac_os_x:10.3.1:*:*:*:*:*:*:*
applemac_os_x10.3.2cpe:2.3:o:apple:mac_os_x:10.3.2:*:*:*:*:*:*:*
applemac_os_x10.3.3cpe:2.3:o:apple:mac_os_x:10.3.3:*:*:*:*:*:*:*
applemac_os_x10.3.4cpe:2.3:o:apple:mac_os_x:10.3.4:*:*:*:*:*:*:*
applemac_os_x10.3.5cpe:2.3:o:apple:mac_os_x:10.3.5:*:*:*:*:*:*:*
applemac_os_x10.3.6cpe:2.3:o:apple:mac_os_x:10.3.6:*:*:*:*:*:*:*
applemac_os_x10.3.7cpe:2.3:o:apple:mac_os_x:10.3.7:*:*:*:*:*:*:*
applemac_os_x10.3.8cpe:2.3:o:apple:mac_os_x:10.3.8:*:*:*:*:*:*:*
applemac_os_x10.3.9cpe:2.3:o:apple:mac_os_x:10.3.9:*:*:*:*:*:*:*
Rows per page:
1-10 of 321

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

6.3

Confidence

High

EPSS

0

Percentile

9.5%

Related for CVE-2005-2714