PT-2005-2700 · Apple · Macos X

Michael Haller

·

Published

2005-06-08

·

Updated

2008-09-05

·

CVE-2005-1727

CVSS v2.0

3.7

Low

VectorAV:L/AC:H/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Apple Mac OS X versions 10.4.x up to 10.4.1
Description The issue allows local users to conduct unauthorized file operations via file race conditions due to insecure world- and group-writable permissions for the system cache folder and Dashboard system widgets.
Recommendations For Apple Mac OS X versions 10.4.x up to 10.4.1, consider changing the permissions of the system cache folder and Dashboard system widgets to prevent world- and group-writable access as a temporary workaround.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-1727

Affected Products

Macos X