CVE-2005-1472: Low severity apple ios and macos vulnerability
Published May 19, 2005
·Updated
Certain system calls in Apple Mac OS X 10.4.1 do not properly enforce the permissions of certain directories without the POSIX read bit set, but with the execute bits set for group or other, which allows local users to list files in otherwise restricted directories.
Affected Software
1 affected component
Apple iOS and macOS=10.4.1
Remediation
Event History
May 19, 2005
CVE Published
04:00 AM
Jun 9, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1472?
CVE-2005-1472 is rated as a moderate severity vulnerability due to improper permission enforcement.
2
How do I fix CVE-2005-1472?
To fix CVE-2005-1472, ensure that proper permissions are set on restricted directories in Mac OS X 10.4.1.
3
What are the consequences of CVE-2005-1472?
The consequences of CVE-2005-1472 include unauthorized access to sensitive files by local users.
4
Which version of Mac OS X is affected by CVE-2005-1472?
CVE-2005-1472 specifically affects Apple Mac OS X version 10.4.1.
5
Can local users exploit CVE-2005-1472?
Yes, local users can exploit CVE-2005-1472 to list files in restricted directories.