Arq Mac OS
Current Description
The (1) arq_updater, (2) arqcommitter, (3) standardrestorer, (4) arqglacierrestorer, and (5) arqs3glacierrestorer helper apps in Arq 5.x before 5.10 for Mac allow local users to gain root privileges via a crafted data packet.
Analysis Description
Arq requires Mac OS X 10.5 or higher. A single-machine license is $29. A family pack, which covers five computers, is $49. Note: When you purchase something after clicking links in our articles. Time Machine was somewhat buggy and slow in Mac OS X Leopard 10.5. For example, it would say preparing backup forever. In Mac OS X 10.6 Snow Leopard, Time Machine is admittedly much faster and more reliable too. Nevertheless, a Time Machine backup drive must remain attached to the computer, or relatively near it. Probably, so long as you are careful – e.g. Making sure Arq and Arq Agent are not running on your Mac. You can probably recover directly from the USB in the case of serious disaster. And (if your NAS dies) you can probably adopt the USB as an Arq backup destination. You will notice every sentence has the word probably.
The (1) arq_updater, (2) arqcommitter, (3) standardrestorer, (4) arqglacierrestorer, and (5) arqs3glacierrestorer helper apps in Arq 5.x before 5.10 for Mac allow local users to gain root privileges via a crafted data packet.
Severity
CVSS 3.x Severity and Metrics:Arq Mac Os Download
Arq Macos
Weakness Enumeration
CWE-ID | CWE Name | Source |
---|---|---|
CWE-732 | Incorrect Permission Assignment for Critical Resource | NIST |
Known Affected Software Configurations Switch to CPE 2.2
Denotes Vulnerable Software
Are we missing a CPE here? Please let us know.
