CVE-2007-0729: High severity Apple iOS and macOS vulnerability
Published Apr 24, 2007
·Updated
Apple File Protocol (AFP) Client in Apple Mac OS X 10.3.9 through 10.4.9 does not properly clean the environment before executing commands, which allows local users to gain privileges by setting unspecified environment variables.
Affected Software
68 affected components
Apple iOS and macOS=10.4.3
Apple Mac OS X Server=10.4.3
Apple Mac OS X Server=10.1.5
Apple Mac OS X Server=10.1
Apple iOS and macOS=10.2.5
Apple Mac OS X Server=10.2.2
Apple iOS and macOS=10.2.7
Apple iOS and macOS=10.0.2
Apple Mac OS X Server=10.1.1
Apple iOS and macOS=10.2.8
Apple Mac OS X Server=10.2.4
Apple iOS and macOS=10.2.1
Apple Mac OS X Server=10.4.9
Apple Mac OS X Server=10.1.2
Apple iOS and macOS=10.3.1
Apple iOS and macOS=10.3.5
Apple iOS and macOS=10.4.1
Apple Mac OS X Server=10.4.2
Apple iOS and macOS=10.1
Apple Mac OS X Server=10.2.7
Apple Mac OS X Server=10.4.4
Apple iOS and macOS=10.0.1
Apple Mac OS X Server=10.2.3
Apple iOS and macOS=10.0.3
Apple Mac OS X Server=10.4.1
Apple iOS and macOS=10.4.9
Apple iOS and macOS=10.1.4
Apple iOS and macOS=10.2.4
Apple iOS and macOS=10.4.7
Apple iOS and macOS=10.4.4
Apple iOS and macOS=10.3.2
Apple iOS and macOS=10.2.2
Apple iOS and macOS=10.0
Apple iOS and macOS=10.3.7
Apple Mac OS X Server=10.2.5
Apple iOS and macOS=10.1.3
Apple Mac OS X Server=10.4
Apple Mac OS X Server=10.4.5
Apple iOS and macOS=10.3.6
Apple iOS and macOS=10.1.5
Apple Mac OS X Server=10.2.6
Apple iOS and macOS=10.4
Apple Mac OS X Server=10.4.6
Apple Mac OS X Server=10.3.9
Apple Mac OS X Server=10.2
Apple Mac OS X Server=10.4.8
Apple iOS and macOS=10.4.6
Apple Mac Os X Preview.app=3.0.8
Apple iOS and macOS=10.3.8
Apple Mac OS X Server=10.2.1
Apple iOS and macOS=10.1.1
Apple Mac OS X Server=10.1.4
Apple iOS and macOS=10.4.5
Apple iOS and macOS=10.3.9
Apple iOS and macOS=10.3.4
Apple iOS and macOS=10.4.8
Apple iOS and macOS=10.3.3
Apple iOS and macOS=10.2.6
Apple iOS and macOS=10.2.3
Apple Mac OS X Server=10.4.7
Apple Mac OS X Server=10.0
Apple Mac OS X Server=10.2.8
Apple iOS and macOS=10.2
Apple iOS and macOS=10.4.2
Apple iOS and macOS=10.3
Apple iOS and macOS=10.0.4
Apple Mac OS X Server=10.1.3
Apple iOS and macOS=10.1.2
Remediation
Patch Available
Event History
Apr 24, 2007
CVE Published
04:19 PM
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0729?
CVE-2007-0729 is considered a high severity vulnerability as it allows local users to gain elevated privileges.
2
How do I fix CVE-2007-0729?
To fix CVE-2007-0729, users should update their Apple Mac OS X systems to the latest patched version provided by Apple.
3
Which versions of Mac OS X are affected by CVE-2007-0729?
CVE-2007-0729 affects Apple Mac OS X versions 10.3.9 through 10.4.9, including server versions.
4
Can CVE-2007-0729 be exploited remotely?
No, CVE-2007-0729 can only be exploited by local users with access to the affected system.
5
Is CVE-2007-0729 related to the Apple File Protocol?
Yes, CVE-2007-0729 specifically affects the Apple File Protocol (AFP) Client in Mac OS X.