CVE-2003-0878: Low severity Apple iOS and macOS vulnerability
Published Oct 30, 2003
·Updated
slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.
Affected Software
1 affected component
Apple iOS and macOS<=10.3
Remediation
Patch Available
Event History
Oct 30, 2003
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Nov 3, 2003
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0878?
CVE-2003-0878 has a moderate severity level due to its potential for local privilege escalation.
2
How do I fix CVE-2003-0878?
To fix CVE-2003-0878, upgrade to Mac OS X 10.3 or later, which addresses this vulnerability.
3
Who is affected by CVE-2003-0878?
Local users of Mac OS X versions prior to 10.3 are affected by CVE-2003-0878.
4
What type of vulnerability is CVE-2003-0878?
CVE-2003-0878 is a symlink attack vulnerability that allows local file overwriting.
5
Has CVE-2003-0878 been mitigated in later versions?
Yes, CVE-2003-0878 has been mitigated in Mac OS X 10.3 and subsequent versions.