CVE-2010-1381 Information

Description

The default configuration of SMB File Server in Apple Mac OS X 10.5.8 and 10.6 before 10.6.4 enables support for wide links which allows remote authenticated users to access arbitrary files via vectors involving symbolic links. NOTE: this might overlap CVE-2010-0926.

Reference

http://lists.apple.com/archives/security-announce/2010//Jun/msg00001.html http://secunia.com/advisories/40220 http://securitytracker.com/id?1024103 http://support.apple.com/kb/HT4188 http://www.securityfocus.com/bid/40871 http://www.vupen.com/english/advisories/2010/1481

Share on: