First published: Fri Oct 14 2011(Updated: )
CoreStorage in Apple Mac OS X 10.7 before 10.7.2 does not ensure that all disk data is encrypted during the enabling of FileVault, which makes it easier for physically proximate attackers to obtain sensitive information by reading directly from the disk device.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X Server | =10.7.1 | |
Apple Mac OS X Server | =10.7.0 | |
macOS Yosemite | =10.7.0 | |
macOS Yosemite | =10.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-3212 is classified as a moderate severity vulnerability.
To fix CVE-2011-3212, update your Mac OS X to version 10.7.2 or later.
CVE-2011-3212 affects Apple Mac OS X versions 10.7.0 and 10.7.1.
CVE-2011-3212 is a data protection vulnerability related to the FileVault feature.
Physically proximate attackers can exploit CVE-2011-3212 to access unencrypted disk data.