ID

VAR-201310-0498


CVE

CVE-2013-5143


TITLE

Apple OS X Server of Server App of RADIUS In service RADIUS Session hijacking vulnerability

Trust: 0.8

sources: JVNDB: JVNDB-2013-004885

DESCRIPTION

The RADIUS service in Server App in Apple OS X Server before 3.0 selects a fallback X.509 certificate in unspecified circumstances, which might allow man-in-the-middle attackers to hijack RADIUS sessions by leveraging knowledge of the private key that matches this fallback certificate. Apple Mac OS X Server is prone to a security-bypass vulnerability. An attacker can exploit this issue to bypass certain security restrictions and gain unauthorized access to an affected application. Versions prior to Mac OS X Server 3.0 are vulnerable. The software enables file sharing, meeting scheduling, website hosting, network remote access, and more. The vulnerability is caused by the wrong use of the Fallback X.509 certificate on the server. An attacker can exploit this vulnerability to hijack RADIUS sessions by implementing a man-in-the-middle attack

Trust: 1.98

sources: NVD: CVE-2013-5143 // JVNDB: JVNDB-2013-004885 // BID: 63285 // VULHUB: VHN-65145

AFFECTED PRODUCTS

vendor:applemodel:os x serverscope:eqversion:2.0

Trust: 1.6

vendor:applemodel:os x serverscope:eqversion:2.1.1

Trust: 1.6

vendor:applemodel:os x serverscope:eqversion:2.2

Trust: 1.6

vendor:applemodel:os x serverscope:eqversion:2.2.1

Trust: 1.6

vendor:applemodel:os x serverscope:eqversion:2.1

Trust: 1.6

vendor:applemodel:os x serverscope:lteversion:2.2.2

Trust: 1.0

vendor:applemodel:macos serverscope:ltversion:3.0 (apple mac os x v10.9 or later )

Trust: 0.8

vendor:applemodel:os x serverscope:eqversion:2.2.2

Trust: 0.6

vendor:applemodel:mac os serverscope:eqversion:x2.2.2

Trust: 0.3

vendor:applemodel:mac os serverscope:eqversion:x2.2.1

Trust: 0.3

vendor:applemodel:mac os serverscope:eqversion:x2.1.1

Trust: 0.3

vendor:applemodel:mac os serverscope:eqversion:x2.1

Trust: 0.3

vendor:applemodel:mac os serverscope:eqversion:x2.0

Trust: 0.3

vendor:applemodel:mac os serverscope:neversion:x3.0

Trust: 0.3

sources: BID: 63285 // JVNDB: JVNDB-2013-004885 // CNNVD: CNNVD-201310-607 // NVD: CVE-2013-5143

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2013-5143
value: MEDIUM

Trust: 1.0

NVD: CVE-2013-5143
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201310-607
value: MEDIUM

Trust: 0.6

VULHUB: VHN-65145
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2013-5143
severity: MEDIUM
baseScore: 6.8
vectorString: AV:N/AC:M/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.6
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-65145
severity: MEDIUM
baseScore: 6.8
vectorString: AV:N/AC:M/AU:N/C:P/I:P/A:P
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: PARTIAL
integrityImpact: PARTIAL
availabilityImpact: PARTIAL
exploitabilityScore: 8.6
impactScore: 6.4
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-65145 // JVNDB: JVNDB-2013-004885 // CNNVD: CNNVD-201310-607 // NVD: CVE-2013-5143

PROBLEMTYPE DATA

problemtype:NVD-CWE-Other

Trust: 1.0

problemtype:CWE-DesignError

Trust: 0.8

sources: JVNDB: JVNDB-2013-004885 // NVD: CVE-2013-5143

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201310-607

TYPE

Design Error

Trust: 0.9

sources: BID: 63285 // CNNVD: CNNVD-201310-607

CONFIGURATIONS

sources: JVNDB: JVNDB-2013-004885

PATCH

title:APPLE-SA-2013-10-22-5url:http://lists.apple.com/archives/security-announce/2013/Oct/msg00006.html

Trust: 0.8

title:HT5999url:http://support.apple.com/kb/HT5999

Trust: 0.8

title:HT5999url:http://support.apple.com/kb/HT5999?viewlocale=ja_JP

Trust: 0.8

sources: JVNDB: JVNDB-2013-004885

EXTERNAL IDS

db:NVDid:CVE-2013-5143

Trust: 2.8

db:JVNid:JVNVU95174988

Trust: 0.8

db:JVNDBid:JVNDB-2013-004885

Trust: 0.8

db:CNNVDid:CNNVD-201310-607

Trust: 0.7

db:APPLEid:APPLE-SA-2013-10-22-5

Trust: 0.6

db:BIDid:63285

Trust: 0.4

db:VULHUBid:VHN-65145

Trust: 0.1

sources: VULHUB: VHN-65145 // BID: 63285 // JVNDB: JVNDB-2013-004885 // CNNVD: CNNVD-201310-607 // NVD: CVE-2013-5143

REFERENCES

url:http://lists.apple.com/archives/security-announce/2013/oct/msg00006.html

Trust: 1.7

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2013-5143

Trust: 0.8

url:http://jvn.jp/cert/jvnvu95174988/

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2013-5143

Trust: 0.8

url:http://www.apple.com/macosx/

Trust: 0.3

sources: VULHUB: VHN-65145 // BID: 63285 // JVNDB: JVNDB-2013-004885 // CNNVD: CNNVD-201310-607 // NVD: CVE-2013-5143

CREDITS

Arek Dreyer of Dreyer Network Consultants

Trust: 0.3

sources: BID: 63285

SOURCES

db:VULHUBid:VHN-65145
db:BIDid:63285
db:JVNDBid:JVNDB-2013-004885
db:CNNVDid:CNNVD-201310-607
db:NVDid:CVE-2013-5143

LAST UPDATE DATE

2024-11-23T20:19:48.803000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-65145date:2013-10-24T00:00:00
db:BIDid:63285date:2013-10-22T00:00:00
db:JVNDBid:JVNDB-2013-004885date:2013-11-11T00:00:00
db:CNNVDid:CNNVD-201310-607date:2013-10-25T00:00:00
db:NVDid:CVE-2013-5143date:2024-11-21T01:57:05.983

SOURCES RELEASE DATE

db:VULHUBid:VHN-65145date:2013-10-24T00:00:00
db:BIDid:63285date:2013-10-22T00:00:00
db:JVNDBid:JVNDB-2013-004885date:2013-10-28T00:00:00
db:CNNVDid:CNNVD-201310-607date:2013-10-25T00:00:00
db:NVDid:CVE-2013-5143date:2013-10-24T10:53:09.740