CVE-2010-0055Apple MAC OS X vulnerability

7 documents7 sources
Severity
10.0CRITICALNVD
EPSS
0.4%
top 39.29%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 30
Latest updateMay 2

Description

xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages3 packages

NVDapple/mac_os_x10.5.8
Debianxar_project/xar< 1.8.0.498-1+1

Patches

🔴Vulnerability Details

3
GHSA
GHSA-94r2-v2xw-w95p: xar in Apple Mac OS X 102022-05-02
CVEList
CVE-2010-0055: xar in Apple Mac OS X 102010-03-30
OSV
CVE-2010-0055: xar in Apple Mac OS X 102010-03-30

📋Vendor Advisories

2
Red Hat
xar: signature bypass vulnerability2010-03-04
Debian
CVE-2010-0055: xar - xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, whic...2010

💬Community

1
Bugzilla
CVE-2010-0055 xar: signature bypass vulnerability2010-03-05
CVE-2010-0055 — Apple MAC OS X vulnerability | cvebase