CVE-2012-0655

Severity

64%

Complexity

99%

Confidentiality

81%

libsecurity in Apple Mac OS X before 10.7.4 does not properly restrict the length of RSA keys within X.509 certificates, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by conducting a spoofing or network-sniffing attack during communication with a site that uses a short key.

libsecurity in Apple Mac OS X before 10.7.4 does not properly restrict the length of RSA keys within X.509 certificates, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by conducting a spoofing or network-sniffing attack during communication with a site that uses a short key.

CVSS 2.0 Base Score 6.4. CVSS Attack Vector: network. CVSS Attack Complexity: low. CVSS Vector: (AV:N/AC:L/Au:N/C:P/I:P/A:N).

Overview

First reported 12 years ago

2012-05-11 03:49:00

Last updated 7 years ago

2017-12-05 02:29:00

Affected Software

Apple Mac OS X 10.0

10.0

Apple Mac OS X 10.0.0

10.0.0

Apple Mac OS X 10.0.1

10.0.1

Apple Mac OS X 10.0.2

10.0.2

Apple Mac OS X 10.0.3

10.0.3

Apple Mac OS X 10.0.4

10.0.4

Apple Mac OS X 10.1

10.1

Apple Mac OS X 10.1.0

10.1.0

Apple Mac OS X 10.1.1

10.1.1

Apple Mac OS X 10.1.2

10.1.2

Apple Mac OS X 10.1.3

10.1.3

Apple Mac OS X 10.1.4

10.1.4

Apple Mac OS X 10.1.5

10.1.5

Apple Mac OS X 10.2

10.2

Apple Mac OS X 10.2.0

10.2.0

Apple Mac OS X 10.2.1

10.2.1

Apple Mac OS X 10.2.2

10.2.2

Apple Mac OS X 10.2.3

10.2.3

Apple Mac OS X 10.2.4

10.2.4

Apple Mac OS X 10.2.5

10.2.5

Apple Mac OS X 10.2.6

10.2.6

Apple Mac OS X 10.2.7

10.2.7

Apple Mac OS X 10.2.8

10.2.8

Apple Mac OS X 10.3

10.3

Apple Mac OS X 10.3.0

10.3.0

Apple Mac OS X 10.3.1

10.3.1

Apple Mac OS X 10.3.2

10.3.2

Apple Mac OS X 10.3.3

10.3.3

Apple Mac OS X 10.3.4

10.3.4

Apple Mac OS X 10.3.5

10.3.5

Apple Mac OS X 10.3.6

10.3.6

Apple Mac OS X 10.3.7

10.3.7

Apple Mac OS X 10.3.8

10.3.8

Apple Mac OS X 10.3.9

10.3.9

Apple Mac OS X 10.4

10.4

Apple Mac OS X 10.4.0

10.4.0

Apple Mac OS X 10.4.1

10.4.1

Apple Mac OS X 10.4.2

10.4.2

Apple Mac OS X 10.4.3

10.4.3

Apple Mac OS X 10.4.4

10.4.4

Apple Mac OS X 10.4.5

10.4.5

Apple Mac OS X 10.4.6

10.4.6

Apple Mac OS X 10.4.7

10.4.7

Apple Mac OS X 10.4.8

10.4.8

Apple Mac OS X 10.4.9

10.4.9

Apple Mac OS X 10.4.10

10.4.10

Apple Mac OS X 10.4.11

10.4.11

Apple Mac OS X 10.5

10.5

Apple Mac OS X 10.5.0

10.5.0

Apple Mac OS X 10.5.1

10.5.1

Apple Mac OS X 10.5.2

10.5.2

Apple Mac OS X 10.5.3

10.5.3

Apple Mac OS X 10.5.4

10.5.4

Apple Mac OS X 10.5.5

10.5.5

Apple Mac OS X 10.5.6

10.5.6

Apple Mac OS X 10.5.7

10.5.7

Apple Mac OS X 10.5.8

10.5.8

Apple Mac OS X 10.6.0

10.6.0

Apple Mac OS X 10.6.1

10.6.1

Apple Mac OS X 10.6.2

10.6.2

Apple Mac OS X 10.6.3

10.6.3

Apple Mac OS X 10.6.4

10.6.4

Apple Mac OS X 10.6.5

10.6.5

Apple Mac OS X 10.6.6

10.6.6

Apple Mac OS X 10.6.7

10.6.7

Apple Mac OS X 10.6.8

10.6.8

Apple Mac OS X 10.7.0

10.7.0

Apple Mac OS X 10.7.1

10.7.1

Apple Mac OS X 10.7.2

10.7.2

Apple Mac OS X

Apple Mac OS X Server 10.0

10.0

Apple Mac OS X Server 10.0.0

10.0.0

Apple Mac OS X Server 10.0.1

10.0.1

Apple Mac OS X Server 10.0.2

10.0.2

Apple Mac OS X Server 10.0.3

10.0.3

Apple Mac OS X Server 10.0.4

10.0.4

Apple Mac OS X Server 10.1

10.1

Apple Mac OS X Server 10.1.0

10.1.0

Apple Mac OS X Server 10.1.1

10.1.1

Apple Mac OS X Server 10.1.2

10.1.2

Apple Mac OS X Server 10.1.3

10.1.3

Apple Mac OS X Server 10.1.4

10.1.4

Apple Mac OS X Server 10.1.5

10.1.5

Apple Mac OS X Server 10.2

10.2

Apple Mac OS X Server 10.2.0

10.2.0

Apple Mac OS X Server 10.2.1

10.2.1

Apple Mac OS X Server 10.2.2

10.2.2

Apple Mac OS X Server 10.2.3

10.2.3

Apple Mac OS X Server 10.2.4

10.2.4

Apple Mac OS X Server 10.2.5

10.2.5

Apple Mac OS X Server 10.2.6

10.2.6

Apple Mac OS X Server 10.2.7

10.2.7

Apple Mac OS X Server 10.2.8

10.2.8

Apple Mac OS X Server 10.3

10.3

Apple Mac OS X Server 10.3.0

10.3.0

Apple Mac OS X Server 10.3.1

10.3.1

Apple Mac OS X Server 10.3.2

10.3.2

Apple Mac OS X Server 10.3.3

10.3.3

Apple Mac OS X Server 10.3.4

10.3.4

Apple Mac OS X Server 10.3.5

10.3.5

Apple Mac OS X Server 10.3.6

10.3.6

Apple Mac OS X Server 10.3.7

10.3.7

Apple Mac OS X Server 10.3.8

10.3.8

Apple Mac OS X Server 10.3.9

10.3.9

Apple Mac OS X Server 10.4

10.4

Apple Mac OS X Server 10.4.0

10.4.0

Apple Mac OS X Server 10.4.1

10.4.1

Apple Mac OS X Server 10.4.2

10.4.2

Apple Mac OS X Server 10.4.3

10.4.3

Apple Mac OS X Server 10.4.4

10.4.4

Apple Mac OS X Server 10.4.5

10.4.5

Apple Mac OS X Server 10.4.6

10.4.6

Apple Mac OS X Server 10.4.7

10.4.7

Apple Mac OS X Server 10.4.8

10.4.8

Apple Mac OS X Server 10.4.9

10.4.9

Apple Mac OS X Server 10.4.10

10.4.10

Apple Mac OS X Server 10.4.11

10.4.11

Apple Mac OS X Server 10.5

10.5

Apple Mac OS X Server 10.5.0

10.5.0

Apple Mac OS X Server 10.5.1

10.5.1

Apple Mac OS X Server 10.5.2

10.5.2

Apple Mac OS X Server 10.5.3

10.5.3

Apple Mac OS X Server 10.5.4

10.5.4

Apple Mac OS X Server 10.5.5

10.5.5

Apple Mac OS X Server 10.5.6

10.5.6

Apple Mac OS X Server 10.5.7

10.5.7

Apple Mac OS X Server 10.5.8

10.5.8

Apple Mac OS X Server 10.6.0

10.6.0

Apple Mac OS X Server 10.6.1

10.6.1

Apple Mac OS X Server 10.6.2

10.6.2

Apple Mac OS X Server 10.6.3

10.6.3

Apple Mac OS X Server 10.6.4

10.6.4

Apple Mac OS X Server 10.6.5

10.6.5

Apple Mac OS X Server 10.6.6

10.6.6

Apple Mac OS X Server 10.6.7

10.6.7

Apple Mac OS X Server 10.6.8

10.6.8

Apple Mac OS X Server 10.7.0

10.7.0

Apple Mac OS X Server 10.7.1

10.7.1

Apple Mac OS X Server 10.7.2

10.7.2

Apple Mac OS X Server

Stay updated

ExploitPedia is constantly evolving. Sign up to receive a notification when we release additional functionality.

Get in touch

If you'd like to report a bug or have any suggestions for improvements then please do get in touch with us using this form. We will get back to you as soon as we can.