CVE Vulnerabilities

CVE-2009-0013

Published: Feb 13, 2009 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

dscl in DS Tools in Apple Mac OS X 10.4.11 and 10.5.6 requires that passwords must be provided as command line arguments, which allows local users to gain privileges by listing process information.

Affected Software

Name Vendor Start Version End Version
Mac_os_x Apple 10.5.6 10.5.6
Mac_os_x_server Apple 10.4.11 10.4.11
Mac_os_x_server Apple 10.5.6 10.5.6
Mac_os_x Apple 10.4.11 10.4.11

References