Unspecified vulnerability in rlogind in the rlogin component in Mac OS X 10.4.11 and 10.5.5 applies hosts.equiv entries to root despite what is stated in documentation, which might allow remote attackers to bypass intended access restrictions.
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/31681 | patch vdb entry |
http://www.securityfocus.com/bid/31708 | vdb entry |
http://www.securitytracker.com/id?1021028 | vdb entry |
http://secunia.com/advisories/32222 | third party advisory vendor advisory |
http://www.vupen.com/english/advisories/2008/2780 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/45785 | vdb entry |
http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html | vendor advisory |
http://support.apple.com/kb/HT3216 |