Open Directory in Apple Mac OS X 10.6 before 10.6.4 creates an unencrypted connection upon certain SSL failures, which allows man-in-the-middle attackers to spoof arbitrary network account servers, and possibly execute arbitrary code, via unspecified vectors.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apple
Published: 2010-06-17T16:00:00Z
Updated: 2024-09-16T18:19:44.394Z
Reserved: 2010-04-15T00:00:00Z
Link: CVE-2010-1377
Vulnrichment
No data.
NVD
Status : Modified
Published: 2010-06-17T16:30:01.637
Modified: 2024-11-21T01:14:16.843
Link: CVE-2010-1377
Redhat
No data.