|
|
|
![]() |
Vulnerability Note VU#869548Apple Mac OS X IPSec mechanism fails to handle certain incoming security policies that match by portOverviewApple's Mac OS X IPSec implementation does not properly filter certain types of IP traffic.I. DescriptionApple Mac OS X contains an implementation of the IP Security Protocol (IPSec). A vulnerability in this implementation may allow a remote attacker to exchange traffic with a host that should not be reachable. For further details, please see Apple Security Update Article ID 61798.II. ImpactA remote attacker may be able to bypass IPSec ACLs and reach a system that should not be reachable.III. SolutionApply a patch.Systems Affected
Referenceshttp://docs.info.apple.com/article.html?artnum=61798 The CERT/CC thanks Apple for providing Apple Security Update Article ID 61798 upon which this document is based. This document was written by Ian A Finlay.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||