[<prev] [next>] [day] [month] [year] [list]
Message-ID: <319717e08e101beb2827175330b2cbdc@suresec.org>
Date: Mon, 7 Nov 2005 20:57:18 +0100
From: suresec advisories <advisories@...esec.org>
To: bugtraq@...urityfocus.com, full-disclosure@...ts.grok.org.uk
Subject: [ Suresec Advisories ] - Mac OS X (xnu) multiple
information leaks.
Suresec Security Advisory - #00008
07/11/2005
Mac OS X (xnu) - Multiple information leaks.
Advisory: http://www.suresec.org/advisories/adv8.pdf
Description:
The Mac OS X kernel has several information leaks.
In certain cases this might be sensitive information, such as portions
of
the file cache or terminal buffers. This information might be directly
useful,
or it might be leveraged to obtain elevated privileges in some way. For
example, a terminal buffer might include a user-entered password.
These vulnerabilities were discovered by Ilja van Sprundel.
<fontfamily><param>Times</param><bigger><bigger>Suresec Security
Advisory - #00008
07/11/2005
Mac OS X (xnu) - Multiple information leaks.
Advisory: http://www.suresec.org/advisories/adv8.pdf
Description:
The Mac OS X kernel has several information leaks.
In certain cases this might be sensitive information, such as portions
of
the file cache or terminal buffers. This information might be directly
useful,
or it might be leveraged to obtain elevated privileges in some way.
For
example, a terminal buffer might include a user-entered password.
These vulnerabilities were discovered by Ilja van Sprundel.</bigger></bigger></fontfamily>
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Powered by blists - more mailing lists