Description
Time Machine in Apple Mac OS X before 10.7.3 does not verify the unique identifier of its remote AFP volume or Time Capsule, which allows remote attackers to obtain sensitive information contained in new backups by spoofing this storage object, a different vulnerability than CVE-2010-1803.
References (2)
Core 2
Core References
Vendor Advisory x_refsource_confirm
http://support.apple.com/kb/HT5130
Vendor Advisory vendor-advisory
x_refsource_apple
http://lists.apple.com/archives/security-announce/2012/Feb/msg00000.html
Scores
EPSS
0.0156
EPSS Percentile
72.7%
Details
Status
published
Products (6)
apple/mac_os_x
10.7.0
apple/mac_os_x
10.7.1
apple/mac_os_x
< 10.7.2
apple/mac_os_x_server
10.7.0
apple/mac_os_x_server
10.7.1
apple/mac_os_x_server
< 10.7.2
Published
Feb 02, 2012
Tracked Since
Feb 18, 2026