CVE Database
/

CVE-2011-3215

Back to search

CVE-2011-3215

Published: Oct 14, 2011

Modified: Aug 6, 2024

PUBLISHED

Description

The kernel in Apple Mac OS X before 10.7.2 does not properly prevent FireWire DMA in the absence of a login, which allows physically proximate attackers to bypass intended access restrictions and discover a password by making a DMA request in the (1) loginwindow, (2) boot, or (3) shutdown state.

VendorProductVersions

n/a

n/a

affected
n/a

References

APPLE-SA-2011-10-12-3
vendor-advisory
x_refsource_APPLE
50085
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now