Title: Apple Mac OS X /sbin/service Path Subversion Privilege Escalation
Info
Disclosure
Jan 21, 2007
Discovery
Unknown
Dates
Exploit
Jan 21, 2007
Solution
Unknown
Description
Mac OS X contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered when 'writeconfig' fails to sanitize the PATH environment variable, allowing an attacker to direct the utility to point to a malicious launchctl executable. This flaw may lead to a loss of integrity.
Classification
Location:
Local Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Integrity
Exploit:
Exploit Public
Disclosure:
Vendor Verified
Solution
Currently, there are no known upgrades, patches, or workarounds available to correct this issue.