CVE-2006-4410: High severity Apple iOS and macOS vulnerability
Published Nov 30, 2006
·Updated
The Security Framework in Apple Mac OS X 10.3.9, and 10.4.x before 10.4.7, does not properly search certificate revocation lists (CRL), which allows remote attackers to access systems by using revoked certificates.
Affected Software
8 affected components
Apple iOS and macOS=10.4.3
Apple iOS and macOS=10.4.1
Apple iOS and macOS=10.4.4
Apple iOS and macOS=10.4
Apple iOS and macOS=10.4.6
Apple iOS and macOS=10.4.5
Apple iOS and macOS=10.3.9
Apple iOS and macOS=10.4.2
Event History
Nov 30, 2006
CVE Published
04:28 PM
Data Sourced
via NVD·04:28 PM
DescriptionSeverityAffected Software
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-4410?
CVE-2006-4410 has been classified as a moderate security vulnerability.
2
How do I fix CVE-2006-4410?
To fix CVE-2006-4410, upgrade Mac OS X to version 10.4.7 or later.
3
What systems are affected by CVE-2006-4410?
CVE-2006-4410 affects Apple Mac OS X versions 10.3.9 and 10.4.x prior to 10.4.7.
4
What vulnerability does CVE-2006-4410 address?
CVE-2006-4410 addresses an issue with the improper searching of certificate revocation lists (CRL) in Apple Mac OS X.
5
Can CVE-2006-4410 allow unauthorized access?
Yes, CVE-2006-4410 can allow remote attackers to access systems using revoked certificates.