First published: Wed Mar 23 2011(Updated: )
Install Helper in Installer in Apple Mac OS X before 10.6.7 does not properly process an unspecified URL, which might allow remote attackers to track user logins by logging network traffic from an agent that was intended to send network traffic to an Apple server.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.6.3 | |
macOS Yosemite | =10.6.6 | |
macOS Yosemite | =10.6.1 | |
macOS Yosemite | =10.6.0 | |
macOS Yosemite | =10.6.2 | |
macOS Yosemite | =10.6.4 | |
Apple Installer | ||
macOS Yosemite | =10.6.5 | |
Apple Mac OS X Server | =10.6.3 | |
Apple Mac OS X Server | =10.6.6 | |
Apple Mac OS X Server | =10.6.4 | |
Apple Mac OS X Server | =10.6.5 | |
Apple Mac OS X Server | =10.6.1 | |
Apple Mac OS X Server | =10.6.2 | |
Apple Mac OS X Server | =10.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0190 has a severity rating that indicates it can potentially lead to tracking of user logins by attackers.
To fix CVE-2011-0190, users should update their Apple Mac OS X to version 10.6.7 or later.
CVE-2011-0190 affects various versions of Apple Mac OS X including 10.6.0 to 10.6.6.
Yes, CVE-2011-0190 might allow remote attackers to exploit the vulnerability to track user activities.
Yes, CVE-2011-0190 involves improper processing of URLs that can affect network traffic intended for Apple servers.