Mac OS X 10.5.x < 10.5.4 Multiple Vulnerabilities

critical Nessus Plugin ID 33281

Synopsis

The remote host is missing a Mac OS X update that fixes various security issues.

Description

The remote host is running a version of Mac OS X 10.5.x that is prior to 10.5.4.

Mac OS X 10.5.4 contains security fixes for multiple components.

Solution

Upgrade to Mac OS X 10.5.4 or later.

See Also

http://support.apple.com/kb/HT2163

http://lists.apple.com/archives/security-announce/2008/Jun/msg00002.html

Plugin Details

Severity: Critical

ID: 33281

File Name: macosx_10_5_4.nasl

Version: 1.23

Type: local

Agent: macosx

Published: 7/1/2008

Updated: 5/28/2024

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 8.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:apple:mac_os_x:10.5

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 6/30/2008

Vulnerability Publication Date: 9/30/2005

Exploitable With

CANVAS (D2ExploitPack)

Reference Information

CVE: CVE-2005-3164, CVE-2007-1355, CVE-2007-2449, CVE-2007-2450, CVE-2007-3382, CVE-2007-3383, CVE-2007-3385, CVE-2007-5333, CVE-2007-5461, CVE-2007-6276, CVE-2008-0960, CVE-2008-1105, CVE-2008-1145, CVE-2008-2307, CVE-2008-2308, CVE-2008-2309, CVE-2008-2310, CVE-2008-2311, CVE-2008-2313, CVE-2008-2314, CVE-2008-2662, CVE-2008-2663, CVE-2008-2664, CVE-2008-2725, CVE-2008-2726

BID: 15003, 24058, 24475, 24476, 24999, 25316, 26070, 26699, 27706, 28123, 29404, 29623, 29836, 30018

CWE: 119, 134, 189, 200, 22, 264, 287, 362, 399, 59, 79

Secunia: 30802