Mac OS X Multiple Vulnerabilities (Security Update 2008-004)

critical Nessus Plugin ID 33282

Synopsis

The remote host is missing a Mac OS X update that fixes various security issues.

Description

The remote host is running a version of Mac OS X 10.4 that does not have the security update 2008-004 applied.

This update contains security fixes for a number of programs.

Solution

Install Security Update 2008-004 or later.

See Also

http://support.apple.com/kb/HT2163

http://lists.apple.com/archives/security-announce/2008/Jun/msg00002.html

Plugin Details

Severity: Critical

ID: 33282

File Name: macosx_SecUpd2008-004.nasl

Version: 1.26

Type: local

Agent: macosx

Published: 7/1/2008

Updated: 7/14/2018

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: High

Score: 7.4

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 8.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:apple:mac_os_x

Required KB Items: Host/MacOSX/packages, Host/uname

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 6/30/2008

Vulnerability Publication Date: 9/30/2005

Exploitable With

CANVAS (D2ExploitPack)

Reference Information

CVE: CVE-2005-3164, CVE-2007-1355, CVE-2007-2449, CVE-2007-2450, CVE-2007-3382, CVE-2007-3383, CVE-2007-3385, CVE-2007-5333, CVE-2007-5461, CVE-2007-6276, CVE-2008-0960, CVE-2008-1105, CVE-2008-1145, CVE-2008-2307, CVE-2008-2308, CVE-2008-2309, CVE-2008-2310, CVE-2008-2311, CVE-2008-2313, CVE-2008-2314, CVE-2008-2662, CVE-2008-2663, CVE-2008-2664, CVE-2008-2725, CVE-2008-2726

BID: 15003, 24058, 24475, 24476, 24999, 25316, 26070, 26699, 27706, 28123, 29404, 29623, 29836, 30018

CWE: 119, 134, 189, 200, 22, 264, 287, 362, 399, 59, 79

Secunia: 30802