Secunia Logo  
 
Mac OS X Security Update Fixes Multiple Vulnerabilities
Secunia Advisory: SA12690
Release Date: 2004-10-05
Popularity: 13,325 views

Critical:
Highly critical
Impact: Security Bypass
Exposure of system information
Exposure of sensitive information
DoS
System access
Where: From remote
Solution Status: Vendor Patch

OS:Apple Macintosh OS X

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2004-0558
CVE-2004-0921
CVE-2004-0922
CVE-2004-0923
CVE-2004-0924
CVE-2004-0925
CVE-2004-0926
CVE-2004-0927


Description:
Apple has issued a security update for Mac OS X, which fixes various vulnerabilities.

1) A vulnerability in the AFP Server can be exploited by guest users to disconnect AFP volumes by sending specially crafted SessionDestroy packets.

The vulnerability does reportedly not affect versions prior to 10.3.

2) A security issue in the AFP Server can be exploited to change the permissions of a write-only AFP drop box to read-write due to an incorrect setting of the guest group id.

This problem does reportedly not affect versions prior to 10.3.

3) A vulnerability in CUPS can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA12556

4) A vulnerability in CUPS within certain methods of authenticated remote printing can be exploited to disclose users' passwords in the log files.

5) A security issue in the NetInfo Manager utility may result in an incorrect indication of the "root" account being disabled.

This problem does reportedly not affect versions prior to 10.3.

6) A security issue in postfix with "SMTPD AUTH" enabled may result in only users with the longest usernames being able to authenticate.

This problem does reportedly not affect versions prior to 10.3.

7) A vulnerability in QuickTime can potentially be exploited to compromise a user's system. The vulnerability is caused due to a boundary error within the handling of BMP images.

8) ServerAdmin comes with a self signed default certificate used for encrypted communication. However, this certificate is the same on all systems and it is therefore possible to decrypt and read captured sessions if this certificate is used.

Solution:
Apply Security Update 2004-09-30.

Mac OS X v10.3.5 and Mac OS X Server v10.3.5:
http://www.apple.com/support/download...te20040930macosx1035clientserver.html

Mac OS X v10.2.8 and Mac OS X Server v10.2.8:
http://www.apple.com/support/download...0040930macosx1028clientandserver.html

Provided and/or discovered by:
4) Gary Smith
6) Michael Rondinelli

Other References:
SA12556:
http://secunia.com/advisories/12556/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. OpenSSL DSA / ECDSA "EVP_VerifyFinal()" Spoofing Vulnerability // 65 views
2. SAP GUI TabOne ActiveX Control Caption List Buffer Overflow // 46 views
3. Symantec Mail Security for SMTP Response Handling Denial of Service // 41 views
4. Joomla! "X_CMS_LIBRARY_PATH" Directory Traversal Vulnerability // 40 views
5. vBulletin Personal Sticky Threads Add-on Security Bypass Vulnerability // 27 views
6. Red Hat update for openssl // 27 views
7. ComponentOne SizerOne CTab ActiveX Control Caption List Buffer Overflow // 27 views
8. TSC2 Help Desk CTab ActiveX Control Caption List Buffer Overflow // 26 views
9. Red Hat update for xterm // 25 views
10. Red Hat update for dbus // 24 views