2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2010-0105" ,
"sourceIdentifier" : "cret@cert.org" ,
"published" : "2010-04-27T15:30:01.217" ,
2024-11-22 11:14:00 +00:00
"lastModified" : "2024-11-21T01:11:32.463" ,
"vulnStatus" : "Modified" ,
2024-12-08 03:06:42 +00:00
"cveTags" : [ ] ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
"value" : "The hfs implementation in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 supports hard links to directories and does not prevent certain deeply nested directory structures, which allows local users to cause a denial of service (filesystem corruption) via a crafted application that calls the mkdir and link functions, related to the fsck_hfs program in the diskdev_cmds component."
} ,
{
"lang" : "es" ,
"value" : "La implementaci\u00f3n de hfs en Apple Mac OS X versi\u00f3n 10.5.8 y versi\u00f3n 10.6.x anterior a 10.6.5, admite enlaces f\u00edsicos en directorios y no impide ciertas estructuras de directorios profundamente anidadas, lo que permite a los usuarios locales causar una denegaci\u00f3n de servicio (corrupci\u00f3n del sistema de archivos) por medio de una aplicaci\u00f3n creada que llama a las funciones mkdir y link, relacionadas con el programa fsck_hfs en el componente diskdev_cmds."
}
] ,
"metrics" : {
"cvssMetricV2" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "2.0" ,
"vectorString" : "AV:L/AC:L/Au:N/C:N/I:N/A:C" ,
2024-11-22 11:14:00 +00:00
"baseScore" : 4.9 ,
2023-04-24 12:24:31 +02:00
"accessVector" : "LOCAL" ,
"accessComplexity" : "LOW" ,
"authentication" : "NONE" ,
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "NONE" ,
2024-11-22 11:14:00 +00:00
"availabilityImpact" : "COMPLETE"
2023-04-24 12:24:31 +02:00
} ,
"baseSeverity" : "MEDIUM" ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 6.9 ,
"acInsufInfo" : false ,
"obtainAllPrivilege" : false ,
"obtainUserPrivilege" : false ,
"obtainOtherPrivilege" : false ,
"userInteractionRequired" : false
}
]
} ,
"weaknesses" : [
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-Other"
}
]
}
] ,
"configurations" : [
{
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.5.8:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1335E35A-D381-4056-9E78-37BC6DF8AD98"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.0:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "3C69DEE9-3FA5-408E-AD27-F5E7043F852A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.1:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D25D1FD3-C291-492C-83A7-0AFAFAADC98D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.2:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "5B565F77-C310-4B83-B098-22F9489C226C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.3:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "546EBFC8-79F0-42C2-9B9A-A76CA3F19470"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:apple:mac_os_x:10.6.4:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "119C8089-8C98-472E-9E9C-1741AA21DD35"
}
]
}
]
}
] ,
"references" : [
{
"url" : "http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" ,
"source" : "cret@cert.org"
} ,
{
"url" : "http://securityreason.com/achievement_securityalert/83" ,
"source" : "cret@cert.org" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://support.apple.com/kb/HT4435" ,
"source" : "cret@cert.org"
} ,
{
"url" : "http://www.securityfocus.com/bid/39658" ,
"source" : "cret@cert.org" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://www.securitytracker.com/id?1024723" ,
"source" : "cret@cert.org"
2024-11-22 11:14:00 +00:00
} ,
{
"url" : "http://lists.apple.com/archives/security-announce/2010//Nov/msg00000.html" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://securityreason.com/achievement_securityalert/83" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://support.apple.com/kb/HT4435" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
} ,
{
"url" : "http://www.securityfocus.com/bid/39658" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Exploit"
]
} ,
{
"url" : "http://www.securitytracker.com/id?1024723" ,
"source" : "af854a3a-2127-422b-91ae-364da2661108"
2023-04-24 12:24:31 +02:00
}
]
}