CVE-2008-0046

critical

Description

The Application Firewall in Apple Mac OS X 10.5.2 has an incorrect German translation for the "Set access for specific services and applications" radio button that might cause the user to believe that the button is used to restrict access only to specific services and applications, which might allow attackers to bypass intended access restrictions.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/41317

http://www.vupen.com/english/advisories/2008/0924/references

http://www.us-cert.gov/cas/techalerts/TA08-079A.html

http://www.securitytracker.com/id?1019658

http://www.securityfocus.com/bid/28368

http://www.securityfocus.com/bid/28304

http://secunia.com/advisories/29420

http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html

http://docs.info.apple.com/article.html?artnum=307562

Details

Source: Mitre, NVD

Published: 2008-03-18

Updated: 2024-11-21

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N

Severity: Medium

CVSS v3

Base Score: 9.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Severity: Critical