Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Apple Mac OS X 'i386_set_ldt()' Privilege Escalation Vulnerability

Information

Severity

Severity

High

Family

Family

Mac OS X Local Security Checks

CVSSv2 Base

CVSSv2 Base

7.2

CVSSv2 Vector

CVSSv2 Vector

AV:L/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

12 years ago

Modified

Modified

4 years ago

Summary

This host is installed with Mac OS X and is prone to a privilege escalation vulnerability.

Insight

Insight

The flaw is due to a privilege checking issue exists in the i386_set_ldt system call, while handling call gates. This allows local users to gain privileges via vectors involving the creation of a call gate entry.

Affected Software

Affected Software

Mac OS X version 10.6 through 10.6.6 Mac OS X Server version 10.6 through 10.6.6.

Solution

Solution

Upgrade to Mac OS X / Mac OS X Server version 10.6.7 or later.

Common Vulnerabilities and Exposures (CVE)