Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2011-3407 | Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2024-09-17T02:32:35.683Z
Reserved: 2011-09-13T00:00:00Z
Link: CVE-2011-3444
No data.
Status : Deferred
Published: 2012-02-02T18:55:01.037
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-3444
No data.
OpenCVE Enrichment
No data.
EUVD