CVE-2009-2801Apple MAC OS X vulnerability

CWE-2644 documents4 sources
Severity
6.4MEDIUMNVD
EPSS
0.2%
top 58.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 30
Latest updateMay 2

Description

The Application Firewall in Apple Mac OS X 10.5.8 drops unspecified firewall rules after a reboot, which might allow remote attackers to bypass intended access restrictions via packet data, related to a "timing issue."

CVSS vector

AV:N/AC:L/C:N/I:P/A:PExploitability: 10.0 | Impact: 4.9

Affected Packages2 packages

NVDapple/mac_os_x10.5.8

Patches

🔴Vulnerability Details

2
GHSA
GHSA-j484-x726-7wg8: The Application Firewall in Apple Mac OS X 102022-05-02
CVEList
CVE-2009-2801: The Application Firewall in Apple Mac OS X 102010-03-30

💥Exploits & PoCs

1
Exploit-DB
MyDesing Sayac 2.0 - Authentication Bypass2009-02-03
CVE-2009-2801 — Apple MAC OS X vulnerability | cvebase