CVE-2006-4396: Medium severity Apple iOS and macOS vulnerability
Published Nov 30, 2006
·Updated
The Apple Type Services (ATS) server in Mac OS X 10.4.8 and earlier does not securely create log files, which allows local users to create and modify arbitrary files via unspecified vectors, possibly relating to a symlink attack.
Affected Software
1 affected component
Apple iOS and macOS<=10.4.8
Event History
Nov 30, 2006
CVE Published
04:28 PM
Data Sourced
via NVD·04:28 PM
DescriptionSeverityAffected Software
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4396?
CVE-2006-4396 has been classified as a moderate severity vulnerability.
2
How do I fix CVE-2006-4396?
To fix CVE-2006-4396, upgrade to Mac OS X version 10.4.9 or later.
3
What are the potential impacts of CVE-2006-4396?
The potential impacts of CVE-2006-4396 include unauthorized access and modification of files by local users.
4
In which versions of Mac OS X is CVE-2006-4396 present?
CVE-2006-4396 is present in Mac OS X versions 10.4.8 and earlier.
5
Who is affected by CVE-2006-4396?
Local users of Mac OS X 10.4.8 and earlier are affected by CVE-2006-4396.