Full Disclosure mailing list archives

[ Suresec Advisories ] - Mac OS X (xnu) multiple information leaks.


From: suresec advisories <advisories () suresec org>
Date: Mon, 7 Nov 2005 20:57:18 +0100

Suresec Security Advisory - #00008

07/11/2005

Mac OS X (xnu) - Multiple information leaks.
Advisory: http://www.suresec.org/advisories/adv8.pdf

Description:
The Mac OS X kernel has several information leaks.

In certain cases this might be sensitive information, such as portions of
the file cache or terminal buffers. This information might be directly useful,
or it might be leveraged to obtain elevated privileges in some way. For
example, a terminal buffer might include a user-entered password.

These vulnerabilities were discovered by Ilja van Sprundel.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: