CVE-2010-0064Apple MAC OS X vulnerability

CWE-2643 documents3 sources
Severity
6.9MEDIUMNVD
EPSS
0.0%
top 88.52%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 30
Latest updateMay 2

Description

DesktopServices in Apple Mac OS X 10.6 before 10.6.3 preserves file ownership during an authenticated Finder copy, which might allow local users to bypass intended disk-quota restrictions and have unspecified other impact by copying files owned by other users.

CVSS vector

AV:L/AC:M/C:C/I:C/A:CExploitability: 3.4 | Impact: 10.0

Affected Packages2 packages

NVDapple/mac_os_x10.6.0, 10.6.1, 10.6.2+2
NVDapple/mac_os_x_server10.6.0, 10.6.1, 10.6.2+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-86vr-cgmf-qfp3: DesktopServices in Apple Mac OS X 102022-05-02
CVEList
CVE-2010-0064: DesktopServices in Apple Mac OS X 102010-03-30
CVE-2010-0064 — Apple MAC OS X vulnerability | cvebase