The Apple Type Services (ATS) server in Mac OS X 10.4.8 and earlier does not securely create log files, which allows local users to create and modify arbitrary files via unspecified vectors, possibly relating to a symlink attack.
References
Configurations
History
No history.
Information
Published : 2006-11-30 16:28
Updated : 2011-03-08 02:40
NVD link : CVE-2006-4396
Mitre link : CVE-2006-4396
CVE.ORG link : CVE-2006-4396
JSON object : View
Products Affected
apple
- mac_os_x
CWE