Total vulnerabilities in the database
The FSFindFolder API in CarbonCore in Apple Mac OS X before 10.6.7 provides a world-readable directory in response to a call with the kTemporaryFolderType flag, which allows local users to obtain potentially sensitive information by accessing this directory.
Software | From | Fixed in |
---|---|---|
apple / mac_os_x | 10.6.3 | 10.6.3.x |
apple / mac_os_x | - | 10.6.6.x |
apple / mac_os_x | 10.6.1 | 10.6.1.x |
apple / mac_os_x | 10.6.0 | 10.6.0.x |
apple / mac_os_x | 10.6.2 | 10.6.2.x |
apple / mac_os_x | 10.6.4 | 10.6.4.x |
apple / mac_os_x | 10.6.5 | 10.6.5.x |
apple / mac_os_x_server | 10.6.3 | 10.6.3.x |
apple / mac_os_x_server | - | 10.6.6.x |
apple / mac_os_x_server | 10.6.4 | 10.6.4.x |
apple / carboncore | - | - |
apple / mac_os_x_server | 10.6.5 | 10.6.5.x |
apple / mac_os_x_server | 10.6.1 | 10.6.1.x |
apple / mac_os_x_server | 10.6.2 | 10.6.2.x |
apple / mac_os_x_server | 10.6.0 | 10.6.0.x |