CVE-2011-0189: Medium severity apple ios and macos vulnerability
The default configuration of Terminal in Apple Mac OS X 10.6 before 10.6.7 uses SSH protocol version 1 within the New Remote Connection dialog, which might make it easier for man-in-the-middle attackers to spoof SSH servers by leveraging protocol vulnerabilities.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0189?
CVE-2011-0189 is considered a moderate severity vulnerability due to its potential for man-in-the-middle attacks.
How do I fix CVE-2011-0189?
To fix CVE-2011-0189, upgrade your Mac OS X to version 10.6.7 or later to ensure SSH protocol version 2 is used.
What do I need to know about CVE-2011-0189?
CVE-2011-0189 affects Terminal configurations using SSH protocol version 1, making systems vulnerable to spoofing.
Who is affected by CVE-2011-0189?
Users of Apple Mac OS X 10.6 versions prior to 10.6.7 are affected by CVE-2011-0189.
What applications are impacted by CVE-2011-0189?
The vulnerability specifically impacts the Apple Terminal application on affected versions of Mac OS X.