|
|
Info |
Last Modified |
| about 1 year ago |
|
|
|
|
|
Description |
Mac OS X contains a flaw that may allow a malicious local user to access the Kerberos ticket of another user. The issue is triggered when Fast User Switching is enabled. It is possible that the flaw may allow arbitrary access to user credentials resulting in a loss of confidentiality.
|
|
Classification |
Location:
Local Access Required
Attack Type:
Authentication Management,
Cryptographic
Impact:
Loss of Confidentiality
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified
|
|
Solution |
Currently, there are no known workarounds or upgrades to correct this issue. However, Apple has released a patch to address this vulnerability.
|
|
Products |
|
Mac OS X
 |
10.4 |
10.4.1 |
10.4.2 |
10.4.3 |
10.4.4 |
10.4.5 |
10.4.6 |
10.4.7 |
|
|
|
|
|
|
Credit |
- Ragnar Sundblad - Royal Institute of Technology, Stockholm, Sweden
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|