CVE-2005-1727: Race Condition
Published Jun 8, 2005
·Updated
Apple Mac OS X 10.4.x up to 10.4.1 sets insecure world- and group-writable permissions for the (1) system cache folder and (2) Dashboard system widgets, which allows local users to conduct unauthorized file operations via "file race conditions."
Affected Software
2 affected components
Apple Mac OS X Server=10.4.1
Apple Mac OS X Server=10.4
Remediation
Event History
Jun 8, 2005
CVE Published
04:00 AM
Jun 14, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1727?
CVE-2005-1727 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2005-1727?
To fix CVE-2005-1727, update your Apple Mac OS X to version 10.4.2 or later.
3
Who is affected by CVE-2005-1727?
Users running Apple Mac OS X 10.4 and 10.4.1 are affected by CVE-2005-1727.
4
What type of attacks can CVE-2005-1727 enable?
CVE-2005-1727 can enable local users to conduct unauthorized file operations through file race conditions.
5
Is CVE-2005-1727 related to file permissions?
Yes, CVE-2005-1727 is related to insecure world- and group-writable permissions for certain system files.