Apple Mac OS X Launch Services Remote Security Bypass Vulnerability
BID:36987
Info
Apple Mac OS X Launch Services Remote Security Bypass Vulnerability
| Bugtraq ID: | 36987 |
| Class: | Design Error |
| CVE: |
CVE-2009-2810 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 09 2009 12:00AM |
| Updated: | Nov 11 2009 08:56PM |
| Credit: | Apple |
| Vulnerable: |
Apple Mac OS X Server 10.6.1 Apple Mac OS X Server 10.6 Apple Mac OS X 10.6.1 Apple Mac OS X 10.6 |
| Not Vulnerable: |
Apple Mac OS X Server 10.6.2 Apple Mac OS X 10.6.2 |
Discussion
Apple Mac OS X Launch Services Remote Security Bypass Vulnerability
Apple Mac OS X is prone to a remote security-bypass vulnerability that affects the Launch Services API.
An attacker can exploit this issue by enticing a user to download a malicious file and launch it without being warned. Successful exploits may bypass the security feature that displays a warning dialog box before executing malicious files from the quarantined directory.
This issue affects the following:
Mac OS X 10.6 and 10.6.1
Mac OS X Server 10.6 and 10.6.1
NOTE: This issue was previously covered in BID 36956 (Apple Mac OS X 2009-006 Multiple Security Vulnerabilities), but has been assigned its own record to better document it.
Apple Mac OS X is prone to a remote security-bypass vulnerability that affects the Launch Services API.
An attacker can exploit this issue by enticing a user to download a malicious file and launch it without being warned. Successful exploits may bypass the security feature that displays a warning dialog box before executing malicious files from the quarantined directory.
This issue affects the following:
Mac OS X 10.6 and 10.6.1
Mac OS X Server 10.6 and 10.6.1
NOTE: This issue was previously covered in BID 36956 (Apple Mac OS X 2009-006 Multiple Security Vulnerabilities), but has been assigned its own record to better document it.
Exploit / POC
Apple Mac OS X Launch Services Remote Security Bypass Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
Apple Mac OS X Launch Services Remote Security Bypass Vulnerability
Solution:
The vendor has released an advisory and updates. Please see the references for details.
Apple Mac OS X 10.6
Apple Mac OS X Server 10.6
Apple Mac OS X Server 10.6.1
Apple Mac OS X 10.6.1
Solution:
The vendor has released an advisory and updates. Please see the references for details.
Apple Mac OS X 10.6
-
Apple MacOSXUpdCombo10.6.2.dmg
For Mac OS X v10.6
http://www.apple.com/support/downloads/
Apple Mac OS X Server 10.6
-
Apple MacOSXServerUpdCombo10.6.2.dmg
For Mac OS X Server v10.6
http://www.apple.com/support/downloads/
Apple Mac OS X Server 10.6.1
-
Apple MacOSXServerUpd10.6.2.dmg
For Mac OS X Server v10.6.1
http://www.apple.com/support/downloads/
Apple Mac OS X 10.6.1
-
Apple MacOSXUpd10.6.2.dmg
For Mac OS X v10.6.1
http://www.apple.com/support/downloads/
References
Apple Mac OS X Launch Services Remote Security Bypass Vulnerability
References:
References:
- Mac OS X Homepage (Apple)