Weakness Name | Source | |
---|---|---|
Improper Link Resolution Before File Access ('Link Following') The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource. |
||
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') The product contains a concurrent code sequence that requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence operating concurrently. |
Metrics | Score | Severity | CVSS Vector | Source |
---|---|---|---|---|
V2 | 7.6 | AV:N/AC:H/Au:N/C:C/I:C/A:C | nvd@nist.gov |
Apple>>Mac_os_x >> Version 10.4.1
Apple>>Mac_os_x >> Version 10.4.2
Apple>>Mac_os_x >> Version 10.4.3
Apple>>Mac_os_x >> Version 10.4.4
Apple>>Mac_os_x >> Version 10.4.5
Apple>>Mac_os_x >> Version 10.4.6
Apple>>Mac_os_x >> Version 10.4.7
Apple>>Mac_os_x >> Version 10.4.8
Apple>>Mac_os_x >> Version 10.4.9
Apple>>Mac_os_x >> Version 10.4.10
Apple>>Mac_os_x >> Version 10.4.11
Apple>>Mac_os_x >> Version 10.5
Apple>>Mac_os_x >> Version 10.5.1
Apple>>Mac_os_x >> Version 10.5.2
Apple>>Mac_os_x >> Version 10.5.3
Apple>>Mac_os_x_server >> Version 10.4.1
Apple>>Mac_os_x_server >> Version 10.4.2
Apple>>Mac_os_x_server >> Version 10.4.3
Apple>>Mac_os_x_server >> Version 10.4.4
Apple>>Mac_os_x_server >> Version 10.4.5
Apple>>Mac_os_x_server >> Version 10.4.6
Apple>>Mac_os_x_server >> Version 10.4.7
Apple>>Mac_os_x_server >> Version 10.4.8
Apple>>Mac_os_x_server >> Version 10.4.9
Apple>>Mac_os_x_server >> Version 10.4.10
Apple>>Mac_os_x_server >> Version 10.4.11
Apple>>Mac_os_x_server >> Version 10.5
Apple>>Mac_os_x_server >> Version 10.5.1
Apple>>Mac_os_x_server >> Version 10.5.2
Apple>>Mac_os_x_server >> Version 10.5.3