Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2017-7149
Description:An issue was discovered in certain Apple products. macOS before 10.13 Supplemental Update is affected. The issue involves the "StorageKit" component. It allows attackers to discover passwords for APFS encrypted volumes by reading Disk Utility hints, because the stored hint value was accidentally set to the password itself, not the entered hint value.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2017-7149
BugTraq ID: 101178
http://www.securityfocus.com/bid/101178
https://hackernoon.com/new-macos-high-sierra-vulnerability-exposes-the-password-of-an-encrypted-apfs-container-b4f2f5326e79
https://nakedsecurity.sophos.com/2017/10/05/urgent-update-your-mac-again-right-now/
https://www.theregister.co.uk/2017/10/05/apple_patches_password_hint_bug_that_revealed_password/
http://www.securitytracker.com/id/1039513




© 1998-2025 E-Soft Inc. All rights reserved.