CVE-2008-3646Race Condition in Apple MAC OS X

CWE-362Race Condition2 documents2 sources
Severity
6.8MEDIUMNVD
EPSS
0.8%
top 26.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 10
Latest updateMay 2

Description

The Postfix configuration file in Mac OS X 10.5.5 causes Postfix to be network-accessible when mail is sent from a local command-line tool, which allows remote attackers to send mail to local Mac OS X users.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages1 packages

NVDapple/mac_os_x10.5.5

Patches

🔴Vulnerability Details

1
GHSA
GHSA-r4f6-vjwc-9238: The Postfix configuration file in Mac OS X 102022-05-02