MacOS C280控制台锁定终端绕过漏洞

漏洞信息详情

MacOS C280控制台锁定终端绕过漏洞

漏洞简介

MacOS 9版本中的Idle locking函数存在漏洞。本地用户可以通过选择对话框中“注销”选项和“取消”选项来绕过闲置会话的密码保护,该对话框用于试图查证用户是否想要登录,该漏洞导致攻击者返回到锁定的会话中。

漏洞公告

Apple has been notified, and It has been filed into their bug database as ID #2405549.
Currently the SecurityFocus staff are not aware of any vendor supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com.

参考网址

来源: BID
名称: 745
链接:http://www.securityfocus.com/bid/745

来源: BUGTRAQ
名称: 19991026 Mac OS 9 Idle Lock Bug
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=94096348604173&w=2

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享