CVE-2011-3462

Apple Mac OS X <10.7.3 - Info Disclosure

Title source: llm
STIX 2.1

Description

Time Machine in Apple Mac OS X before 10.7.3 does not verify the unique identifier of its remote AFP volume or Time Capsule, which allows remote attackers to obtain sensitive information contained in new backups by spoofing this storage object, a different vulnerability than CVE-2010-1803.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
http://support.apple.com/kb/HT5130
Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2012/Feb/msg00000.html

Scores

EPSS 0.0156
EPSS Percentile 72.7%

Details

Status published
Products (6)
apple/mac_os_x 10.7.0
apple/mac_os_x 10.7.1
apple/mac_os_x < 10.7.2
apple/mac_os_x_server 10.7.0
apple/mac_os_x_server 10.7.1
apple/mac_os_x_server < 10.7.2
Published Feb 02, 2012
Tracked Since Feb 18, 2026