Apple Open Firmware Insecure Password Vulnerability
BID:3186
Info
Apple Open Firmware Insecure Password Vulnerability
| Bugtraq ID: | 3186 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 15 2001 12:00AM |
| Updated: | Aug 15 2001 12:00AM |
| Credit: | This vulnerability was submitted by Macintosh Security <[email protected]> |
| Vulnerable: |
Apple Open Firmware PowerBook 4.1.8 Apple Open Firmware Power Mac G4 4.1.8 Apple Open Firmware iMac 4.1.7 Apple Open Firmware iBook 4.1.7 Apple Open Firmware G4 Cube 4.1.8 |
| Not Vulnerable: | |
Discussion
Apple Open Firmware Insecure Password Vulnerability
A user who has set an Open Firmware password on their Apple system believes it to be safe when powered down. There is a tool that any user with access to the Finder can run in order to reveal the Open Firmware password without any decryption.
A user who has set an Open Firmware password on their Apple system believes it to be safe when powered down. There is a tool that any user with access to the Finder can run in order to reveal the Open Firmware password without any decryption.
Exploit / POC
Apple Open Firmware Insecure Password Vulnerability
The following is the fwsucker program to retrieve the Open Firmware password.
The following is the fwsucker program to retrieve the Open Firmware password.
Solution / Fix
Apple Open Firmware Insecure Password Vulnerability
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently the SecurityFocus staff are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.