2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2010-0525" ,
"sourceIdentifier" : "product-security@apple.com" ,
"published" : "2010-03-30T18:30:01.313" ,
"lastModified" : "2010-06-21T04:00:00.000" ,
"vulnStatus" : "Analyzed" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "Mail in Apple Mac OS X before 10.6.3 does not properly enforce the key usage extension during processing of a keychain that specifies multiple certificates for an e-mail recipient, which might make it easier for remote attackers to obtain sensitive information via a brute-force attack on a weakly encrypted e-mail message."
} ,
{
"lang" : "es" ,
"value" : "Mail en Apple Mac OS X anterior v10.6.3 no refuerza adecuadamente la clave de extensi\u00f3n usage durante el procesado de una cadena de claves que especifica m\u00faltiples certificados para un recipiente e-mail, lo que puede hacer que sea f\u00e1cil para atacantes remotos obtener informaci\u00f3n sensible a trav\u00e9s de ataques de fuerza bruta en un mensaje e-mail encriptado d\u00e9bilmente."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:N/AC:L/Au:N/C:P/I:N/A:N" ,
"accessVector" : "NETWORK" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "PARTIAL" ,
"integrityImpact" : "NONE" ,
"availabilityImpact" : "NONE" ,
"baseScore" : 5.0
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 10.0 ,
"impactScore" : 2.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-310"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "10.6.2" ,
"matchCriteriaId" : "EBB8993A-11A8-44F3-9C7D-EF4EFED3CC23"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DC90AA12-DD17-4607-90CB-E342E83F20BB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3F3E721C-00CA-4D51-B542-F2BC5C0D65BF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B3267A41-1AE0-48B8-BD1F-DEC8A212851A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "855288F1-0242-4951-AB3F-B7AF13E21CF6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "10082781-B93E-4B84-94F2-FA9749B4D92B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AE1EBF04-C440-4A6B-93F2-DC3A812728C2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "DFB077A2-927B-43AF-BFD5-0E78648C9394"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2398ADC8-A106-462E-B9AE-F8AF800D0A3C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1335E35A-D381-4056-9E78-37BC6DF8AD98"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3C69DEE9-3FA5-408E-AD27-F5E7043F852A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D25D1FD3-C291-492C-83A7-0AFAFAADC98D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:*:*:*:*:*:*:*:*" ,
"versionEndIncluding" : "10.6.2" ,
"matchCriteriaId" : "9EB5E8FD-7B73-4307-8ADB-A8C777218A85"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C7817232-BE3E-4655-8282-A979E5D40D3D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "77E8D614-E1EE-42F1-9E55-EA54FB500621"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C73BED9E-29FB-4965-B38F-013FFE5A9170"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D3B7DEC3-1C0B-4D13-98CD-CB7FAE7933B0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7723A9E8-1DE2-4C7D-81E6-4F79DCB09324"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.5:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C147E866-B80F-4FFA-BBE8-19E84A46DB1C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.6:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8EC681A4-6F58-4C7D-B4E0-FCC1BCBC534E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.7:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "ADF94705-562C-4EC8-993E-1AD88F01549C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.5.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "82B4CD59-9F37-4EF0-BA43-427CFD6E1329"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.6.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "26E34E35-CCE9-42BE-9AFF-561D8AA90E25"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x_server:10.6.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "A04FF6EE-D4DA-4D70-B0CE-154292828531"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.html" ,
"source" : "product-security@apple.com" ,
"tags" : [
"Vendor Advisory"
]
} ,
{
"url" : "http://support.apple.com/kb/HT4077" ,
"source" : "product-security@apple.com" ,
"tags" : [
"Vendor Advisory"
]
}
]
}