Mac OS X 10.6.x < 10.6.4 Multiple Vulnerabilities

high Nessus Plugin ID 47023

Synopsis

The remote host is missing a Mac OS X update that fixes various security issues.

Description

The remote host is running a version of Mac OS X 10.6.x that is prior to 10.6.4.

Mac OS X 10.6.4 contains security fixes for the following components :

- CUPS
- DesktopServices
- Flash Player plug-in
- Folder Manager
- Help Viewer
- iChat
- ImageIO
- Kerberos
- Kernel
- libcurl
- Network Authorization
- Open Directory
- Printer Setup
- Printing
- Ruby
- SMB File Server
- SquirrelMail
- Wiki Server

Solution

Upgrade to Mac OS X 10.6.4 or later.

See Also

http://support.apple.com/kb/HT4188

http://lists.apple.com/archives/security-announce/2010/Jun/msg00001.html

Plugin Details

Severity: High

ID: 47023

File Name: macosx_10_6_4.nasl

Version: 1.23

Type: combined

Agent: macosx

Published: 6/15/2010

Updated: 5/28/2024

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 8.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 8.2

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:F/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:apple:mac_os_x:10.6

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 6/15/2010

Vulnerability Publication Date: 5/8/2009

Exploitable With

Core Impact

Reference Information

CVE: CVE-2009-1578, CVE-2009-1579, CVE-2009-1580, CVE-2009-1581, CVE-2009-2964, CVE-2009-4212, CVE-2010-0186, CVE-2010-0187, CVE-2010-0283, CVE-2010-0302, CVE-2010-0540, CVE-2010-0541, CVE-2010-0545, CVE-2010-0546, CVE-2010-0734, CVE-2010-1320, CVE-2010-1373, CVE-2010-1374, CVE-2010-1376, CVE-2010-1377, CVE-2010-1379, CVE-2010-1380, CVE-2010-1381, CVE-2010-1382, CVE-2010-1411, CVE-2010-1748, CVE-2010-1816, CVE-2010-1821

BID: 34916, 36196, 37749, 38198, 38200, 38260, 38510, 39599, 40886, 40887, 40888, 40889, 40892, 40893, 40895, 40897, 40902, 40903, 40905

CWE: 189, 20, 287, 352, 399, 79, 94