Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> MacOS X Local Security Checks >> Mac OS X < 10.4


Vulnerability Assessment Details

Mac OS X < 10.4

Vulnerability Assessment Summary
Check for the version of Mac OS X

Detailed Explanation for this Vulnerability Assessment

The remote host is running a version of Mac OS X which is older than
version 10.4.

Versions older than 10.4 contain a security issue in the way they handle
the permissions of pseudo terminals.

When an application uses a new pseudo terminal, it can not restrict its
permissions to a safe mode. As a result, every created pseudo terminal
has permissions 0666 set, which permits a local attacker to sniff the session
of other users.

Solution : Upgrade to Mac OS X
See also : http://www.securityfocus.com/archive/1/397306
Network Security Threat Level: Medium

Networks Security ID: 13467

Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security

Cables, Connectors


Intel RAID Storage Expander RES2SV240 E91267-203 SAS SATA 6Gb 24 Port US picture

Intel RAID Storage Expander RES2SV240 E91267-203 SAS SATA 6Gb 24 Port US

$65.99



ADAPTEC ASR-7805 Single 6gb/s 8int Port SAS/SATA Raid Controller With Cache picture

ADAPTEC ASR-7805 Single 6gb/s 8int Port SAS/SATA Raid Controller With Cache

$12.00



ATTO R644 SAS RAID PCIe card picture

ATTO R644 SAS RAID PCIe card

$99.00



J7TNV DELL PERC HBA330+ 12GBPS SAS SATA PCI-E X8 RAID Controller Adapter 0J7TNV picture

J7TNV DELL PERC HBA330+ 12GBPS SAS SATA PCI-E X8 RAID Controller Adapter 0J7TNV

$54.99



DELL LSI MegaRAID 9280-4i4e SAS/SATA 6G RAID Card 55G6T W/Battery (Rust Bracket) picture

DELL LSI MegaRAID 9280-4i4e SAS/SATA 6G RAID Card 55G6T W/Battery (Rust Bracket)

$9.99



LSI MegaRAID SAS 9271-8i 8-Port 6Gb/s SATA/SAS 1GB PCI-E 3.0 RAID Controller picture

LSI MegaRAID SAS 9271-8i 8-Port 6Gb/s SATA/SAS 1GB PCI-E 3.0 RAID Controller

$29.95



NEW DELL PERC H710P PCIE RAID CONTROLLER 6GB/S 1GB NV CACHE US seller picture

NEW DELL PERC H710P PCIE RAID CONTROLLER 6GB/S 1GB NV CACHE US seller

$69.88



Dell 047MCV 8-Port PERC H200 6Gb/s SAS/SATA PCI-e Raid Controller Card   picture

Dell 047MCV 8-Port PERC H200 6Gb/s SAS/SATA PCI-e Raid Controller Card

$24.99



BROKEN OWC ThunderBay 8 RAID 5 Edition  8-Bay External Drive picture

BROKEN OWC ThunderBay 8 RAID 5 Edition 8-Bay External Drive

$157.50



Adaptec ASR-8805 12GBPS SAS/SATA/SSD Raid card with AFM-700 1GB Flash, Battery. picture

Adaptec ASR-8805 12GBPS SAS/SATA/SSD Raid card with AFM-700 1GB Flash, Battery.

$119.99



Discussions

No Discussions have been posted on this vulnerability.