CVE-2004-1089: Medium severity Apple Quicktime Streaming Server vulnerability
Published Dec 2, 2004
·Updated
Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local users to access mailboxes of other users.
Affected Software
35 affected components
Apple Quicktime Streaming Server=4.1.1
Apple Darwin Streaming Server=5.0.1
Apple Darwin Streaming Server=4.1.3
Apple Mac OS X Server=10.3.2
Apple iOS and macOS=10.2.5
Apple Mac OS X Server=10.2.2
Apple iOS and macOS=10.2.7
Apple iOS and macOS=10.2.8
Apple Mac OS X Server=10.2.4
Apple iOS and macOS=10.2.1
Apple Mac OS X Server=10.3.5
Apple iOS and macOS=10.3.1
Apple iOS and macOS=10.3.5
Apple Mac OS X Server=10.3.3
Apple Mac OS X Server=10.2.7
Apple Mac OS X Server=10.2.3
Apple iOS and macOS=10.2.4
Apple Mac OS X Server=10.3.4
Apple iOS and macOS=10.3.2
Apple iOS and macOS=10.2.2
Apple Mac OS X Server=10.2.5
Apple iOS and macOS=10.3.6
Apple Mac OS X Server=10.3
Apple Mac OS X Server=10.2.6
Apple Mac OS X Server=10.2
Apple Mac OS X Server=10.2.1
Apple Mac OS X Server=10.3.1
Apple iOS and macOS=10.3.4
Apple iOS and macOS=10.3.3
Apple iOS and macOS=10.2.6
Apple iOS and macOS=10.2.3
Apple Mac OS X Server=10.2.8
Apple iOS and macOS=10.2
Apple iOS and macOS=10.3
Apple Mac OS X Server=10.3.6
Remediation
Patch Available
Patch Available
Event History
Dec 2, 2004
CVE Published
05:00 AM
Apr 14, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1089?
CVE-2004-1089 has a moderate severity rating as it allows local users to access mailboxes of other users.
2
How do I fix CVE-2004-1089?
To fix CVE-2004-1089, update your Mac OS X server to the latest available version that addresses this vulnerability.
3
Which versions are affected by CVE-2004-1089?
CVE-2004-1089 affects Apple Mac OS X server versions up to 10.3.6, including various earlier versions.
4
Who can exploit CVE-2004-1089?
CVE-2004-1089 can be exploited by any local user on affected systems who has access to the server.
5
What impact does CVE-2004-1089 have on system security?
The impact of CVE-2004-1089 is that it compromises the confidentiality of user mailboxes, allowing unauthorized access.