Mac OS X Multiple Vulnerabilities (Security Update 2005-007)

critical Nessus Plugin ID 19463

Synopsis

The remote host is missing a Mac OS X update that fixes various security issues.

Description

The remote host is running a version of Mac OS X 10.4 or 10.3 that does not have Security Update 2005-007 applied.

This security update contains fixes for the following products :

- Apache 2
- AppKit
- Bluetooth
- CoreFoundation
- CUPS
- Directory Services
- HItoolbox
- Kerberos
- loginwindow
- Mail
- MySQL
- OpenSSL
- QuartzComposerScreenSaver
- ping
- Safari
- SecurityInterface
- servermgrd
- servermgr_ipfilter
- SquirelMail
- traceroute
- WebKit
- WebLog Server
- X11
- zlib

Solution

!Install Security Update 2005-007.

See Also

http://www.nessus.org/u?74ffa359

Plugin Details

Severity: Critical

ID: 19463

File Name: macosx_SecUpd2005-007.nasl

Version: 1.15

Type: local

Agent: macosx

Published: 8/18/2005

Updated: 7/14/2018

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.7

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:apple:mac_os_x

Required KB Items: Host/MacOSX/packages

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 8/12/2005

Vulnerability Publication Date: 8/12/2005

Reference Information

CVE: CVE-2004-0079, CVE-2004-0112, CVE-2004-0885, CVE-2004-0942, CVE-2004-1083, CVE-2004-1084, CVE-2004-1189, CVE-2005-0605, CVE-2005-0709, CVE-2005-0710, CVE-2005-0711, CVE-2005-1174, CVE-2005-1175, CVE-2005-1344, CVE-2005-1689, CVE-2005-1769, CVE-2005-1849, CVE-2005-2095, CVE-2005-2096, CVE-2005-2501, CVE-2005-2502, CVE-2005-2503, CVE-2005-2504, CVE-2005-2505, CVE-2005-2506, CVE-2005-2507, CVE-2005-2508, CVE-2005-2509, CVE-2005-2510, CVE-2005-2511, CVE-2005-2512, CVE-2005-2513, CVE-2005-2514, CVE-2005-2515, CVE-2005-2516, CVE-2005-2517, CVE-2005-2518, CVE-2005-2519, CVE-2005-2520, CVE-2005-2521, CVE-2005-2522, CVE-2005-2523, CVE-2005-2524, CVE-2005-2525, CVE-2005-2526, CVE-2005-2745

BID: 14567, 14569

CWE: 119