Click here to read about celebrity scandals
| MOAB-15-01-2007: Multiple Mac OS X Local Privilege Escalation Vulnerabilities |
| Published: January 15, 2007, 7:00 pm |
| Tags: Flawed Design, Privilege Escalation, Diskutil |
| Multiple binaries inside the /Applications directory tree are setuid root, but remain writable by users in the admin group (ex. first user by default in a non-server Mac OS X installation), allowing privilege escalation. A malicious user can overwrite the binaries and perform a disk permissions repair operation via the |
|
|