PT-2008-4994 · Apple · Macos X

Published

2008-09-16

·

Updated

2017-08-08

·

CVE-2008-3618

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mac OS X versions 10.5 through 10.5.4
Description The issue concerns the File Sharing pane in the Sharing preference pane, which does not properly inform users about the scope of file sharing. Specifically, it fails to notify users that the complete contents of their own home directories are shared for their own use. This lack of transparency might allow attackers to exploit other vulnerabilities and access files that the user did not intend to share.
Recommendations For Mac OS X versions 10.5 through 10.5.4, consider restricting file sharing to only the intended directories and files to minimize the risk of unintended access. As a temporary workaround, users should be cautious about the files stored in their home directories, ensuring that sensitive information is not inadvertently shared.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-3618

Affected Products

Macos X