Perl in Apple Mac OS X Server 10.3.9 does not properly drop privileges when using the "$<" variable to set uid, which allows attackers to gain privileges.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/23561 | vdb entry |
http://www.vupen.com/english/advisories/2005/2869 | vdb entry vendor advisory |
http://www.osvdb.org/21800 | vdb entry |
http://secunia.com/advisories/19064 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/16907 | vdb entry |
http://www.vupen.com/english/advisories/2006/0791 | vdb entry vendor advisory |
http://lists.apple.com/archives/security-announce/2006/Mar/msg00000.html | vendor advisory |
http://www.us-cert.gov/cas/techalerts/TA06-062A.html | third party advisory us government resource |
http://www.securityfocus.com/bid/15833 | vdb entry |
http://secunia.com/advisories/17922 | third party advisory vendor advisory |
http://docs.info.apple.com/article.html?artnum=303382 |