CFNetwork in Apple Safari before 4.0 on Windows does not properly protect the temporary files created for downloads, which allows local users to obtain sensitive information by reading these files.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://lists.apple.com/archives/security-announce/2009/jun/msg00002.html | patch vendor advisory |
http://www.securityfocus.com/bid/35260 | exploit vdb entry patch |
http://www.vupen.com/english/advisories/2009/1522 | vdb entry patch vendor advisory |
http://secunia.com/advisories/35379 | third party advisory |
http://support.apple.com/kb/HT3613 | patch vendor advisory |
http://securitytracker.com/id?1022342 | vdb entry |
http://www.securityfocus.com/bid/35347 | vdb entry |