OSVDB ID: 23641

Title: Apple Mac OS X BOMArchiveHelper Traversal Arbitrary File Overwrite

Info

Disclosure

Feb 28, 2006

Discovery

Unknown

Dates

Exploit

Unknown

Solution

Mar 03, 2006

Description

Mac OS X contains a flaw that allows an attacker to create archive files which unpack to arbitrary directories which are writable by the current user. The issue is due to the BOM framework not properly sanitizing paths to be written.

Classification

Location: Local Access Required
Attack Type: Input Manipulation, Other
Impact: Loss of Integrity
Exploit: Exploit Unknown
Disclosure: OSVDB Verified, Vendor Verified

Solution

Currently, there are no known workarounds or upgrades to correct this issue. However, Apple has released a patch (2006-001) to address this vulnerability.

Products

Apple Computer, Inc.

Mac OS X

10.3.x
10.4
10.4.1
10.4.2
10.4.3
10.4.4
10.4.5

References

Credit

  • iDefense - iDefense


Direct URL: http://osvdb.org/23641