PT-2005-3410 · Openldap+2 · Ldap+2
Jim Foraker
·
Published
2005-08-19
·
Updated
2008-09-05
·
CVE-2005-2511
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Mac OS X versions prior to 10.4.2
Description
The issue allows attackers to gain access to a root Terminal window when using Kerberos authentication with LDAP.
Recommendations
For Mac OS X versions prior to 10.4.2, consider disabling Kerberos authentication with LDAP until a patch is available. Restrict access to the root Terminal window to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Kerberos
Ldap
Macos X