First published: Tue Mar 30 2010(Updated: )
The Application Firewall in Apple Mac OS X 10.5.8 drops unspecified firewall rules after a reboot, which might allow remote attackers to bypass intended access restrictions via packet data, related to a "timing issue."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | =10.5.8 | |
Apple iOS and macOS | =10.5.8 | |
=10.5.8 | ||
=10.5.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-2801 is considered a medium severity vulnerability due to its potential to allow unauthorized network access.
To mitigate CVE-2009-2801, update to a patched version of Mac OS X beyond 10.5.8.
CVE-2009-2801 affects Apple Mac OS X 10.5.8 and Mac OS X Server 10.5.8.
CVE-2009-2801 is exploited via dropped firewall rules after a reboot, potentially allowing remote attackers to bypass access restrictions.
Currently, the primary recommended action for CVE-2009-2801 is to upgrade to a more secure version of the operating system.