Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability
BID:29501
Info
Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability
| Bugtraq ID: | 29501 |
| Class: | Input Validation Error |
| CVE: |
CVE-2008-1571 |
| Remote: | Yes |
| Local: | No |
| Published: | May 28 2008 12:00AM |
| Updated: | Jun 03 2008 07:43PM |
| Credit: | Apple |
| Vulnerable: |
Apple Mac OS X Server 10.4.11 Apple Mac OS X 10.4.11 |
| Not Vulnerable: |
Apple Mac OS X Server 10.5.3 Apple Mac OS X 10.5.3 |
Discussion
Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability
Apple's Image Capture is prone to a directory-traversal vulnerability because the application fails to properly sanitize user-supplied input.
An attacker can exploit this issue to gain access to arbitrary files in the context of the affected server. Information gathered may lead to other attacks.
This vulnerability affects Mac OS X 10.4.11 and Mac OS X Server 10.4.11.
NOTE: This issue was previously covered in BID 29412 (Apple Mac OS X 2008-003 Multiple Security Vulnerabilities) but has been given its own record to better document the vulnerability.
Apple's Image Capture is prone to a directory-traversal vulnerability because the application fails to properly sanitize user-supplied input.
An attacker can exploit this issue to gain access to arbitrary files in the context of the affected server. Information gathered may lead to other attacks.
This vulnerability affects Mac OS X 10.4.11 and Mac OS X Server 10.4.11.
NOTE: This issue was previously covered in BID 29412 (Apple Mac OS X 2008-003 Multiple Security Vulnerabilities) but has been given its own record to better document the vulnerability.
Exploit / POC
Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability
Attackers can exploit this issue using a browser.
Attackers can exploit this issue using a browser.
Solution / Fix
Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability
Solution:
A vendor advisory is available to address this issue. Please see the referenced advisory for more information.
Apple Mac OS X Server 10.4.11
Apple Mac OS X 10.4.11
Solution:
A vendor advisory is available to address this issue. Please see the referenced advisory for more information.
Apple Mac OS X Server 10.4.11
-
Apple Security Update 2008-003 Server (PPC)
http://www.apple.com/support/downloads/securityupdate2008003serverppc. html -
Apple Security Update 2008-003 Server (Universal)
http://www.apple.com/support/downloads/securityupdate2008003serveruniv ersal.html
Apple Mac OS X 10.4.11
-
Apple Security Update 2008-003 (Intel)
http://www.apple.com/support/downloads/securityupdate2008003intel.html -
Apple Security Update 2008-003 (PPC)
http://www.apple.com/support/downloads/securityupdate2008003ppc.html
References
Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability
References:
References:
- Mac OS X Homepage (Apple)