CVE-2014-1264CVE-2014-1264

Affected configuration(s):

cpe:/o:apple:mac_os_x:10.9
cpe:/o:apple:mac_os_x:10.9.1

Date published: 2014-02-26T20:55:04.100-05:00

Date last modified: 2014-03-10T13:32:44.690-04:00

CVSS Score: 3.3

Principal attack vector: LOCAL

Complexity:  MEDIUM

Reference URL: http://support.apple.com/kb/HT6150

Summary: Finder in Apple OS X before 10.9.2 does not ensure ACL integrity after the viewing of file ACL information, which allows local users to bypass intended access restrictions in opportunistic circumstances via standard filesystem operations on a file with a damaged ACL.

CategoriesUncategorised

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.