Full Disclosure mailing list archives

!ADVISORY! + x Thu Mar 16 02:49:51 EST 2006 x + Directory Transversal in Apple MacOSX


From: adf () code511 com
Date: Thu, 16 Mar 2006 07:49:57 +0000 (GMT)




!ADVISORY! + x Thu Mar 16 02:49:51 EST 2006 x + Directory Transversal in Apple MacOSX




++++++++++++++++++++++++++++++++++++++++++++++++++++
1. BACKGROUND
++++++++++++++++++++++++++++++++++++++++++++++++++++
There has been no background.
++++++++++++++++++++++++++++++++++++++++++++++++++++
2. DESCRIPTION
++++++++++++++++++++++++++++++++++++++++++++++++++++
Remote exploitation of a directory traversal vulnerability in Apple MacOSX could allow attackers to overwrite or view 
arbitrary files with user-supplied contents.

++++++++++++++++++++++++++++++++++++++++++++++++++++
3. VENDOR RESPONSE
++++++++++++++++++++++++++++++++++++++++++++++++++++
Apple MacOSX was offered no explanation.
++++++++++++++++++++++++++++++++++++++++++++++++++++
APPENDIX A VENDOR INFORMATION
++++++++++++++++++++++++++++++++++++++++++++++++++++
http://www.apple.com/macosx/

++++++++++++++++++++++++++++++++++++++++++++++++++++
APPENDIX B REFERENCES
++++++++++++++++++++++++++++++++++++++++++++++++++++
RFC 4112

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: