First published: Fri May 28 2004(Updated: )
The default protocol helper for the disk: URI on Mac OS X 10.3.3 and 10.2.8 allows remote attackers to write arbitrary files by causing a disk image file (.dmg) to be mounted as a disk volume.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.2.8 | |
macOS Yosemite | =10.3.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0485 is considered a high severity vulnerability due to the potential for remote file writing.
To fix CVE-2004-0485, users should upgrade their Mac OS X to a version that is not affected, beyond 10.3.3 and 10.2.8.
CVE-2004-0485 affects users running Mac OS X 10.2.8 and 10.3.3.
CVE-2004-0485 enables remote attackers to execute arbitrary file writing attacks via mounted disk images.
There are no known workarounds for CVE-2004-0485; upgrading the system is the recommended approach.