VShieldCheck in McAfee VirusScan for Mac (Virex) before 7.7 patch 1 allow local users to change permissions of arbitrary files via a symlink attack on /Library/Application Support/Virex/VShieldExclude.txt, as demonstrated by symlinking to the root crontab file to execute arbitrary commands.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/22744 | vdb entry exploit |
http://www.securityfocus.com/archive/1/461485/100/0/threaded | mailing list |
http://osvdb.org/33797 | vdb entry |
http://www.securitytracker.com/id?1017707 | vdb entry |
https://knowledge.mcafee.com/SupportSite/dynamickc.do?externalId=518722&sliceId=SAL_Public&command=show&forward=nonthreadedKC&kcId=518722 | |
http://www.vupen.com/english/advisories/2007/0777 | vdb entry |
http://secunia.com/advisories/24337 | third party advisory vendor advisory |
http://securityreason.com/securityalert/2342 | third party advisory exploit |
https://exchange.xforce.ibmcloud.com/vulnerabilities/32729 | vdb entry |