CVE-2010-0055
xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.
Affects 2 products across 1 vendor.
This vulnerability was disclosed in 2010. A critical vulnerability affects Apple systems (CVE-2010-0055). No public exploit code is currently available. Isolate affected systems if patching is not feasible.
BSID: BS-2010-GLOBAL-084427-C • Model: rule-based-v1 • Confidence: MEDIUM
Is this CVE in your environment?
BreachSpider monitors your ICS/OT environment for vulnerabilities like this one. No agents or network access required. Free to start.
Check My Environment →What is CVE-2010-0055?
What is the CVSS score for CVE-2010-0055?
Is CVE-2010-0055 actively exploited?
How do I remediate CVE-2010-0055?
What systems are affected by CVE-2010-0055?
| CVE ID | CVE-2010-0055 |
|---|---|
| BSID | BS-2010-GLOBAL-084427-C BreachSpider Global ID |
| CVSS Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| Published | 2010-03-30 |
| Last Modified | 2026-04-29 |
| ICS Relevance | 0% |
| Source | NVD |
xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.
Source: NIST NVD / MITRE CVE Database
Vulnerability details: xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package. CVSS vector: AV:N/AC:L/Au:N/C:C/I:C/A:C.
Exploitation Likelihood: LOW
| CISA KEV | Not in KEV catalog |
|---|---|
| Public Exploit | Not confirmed |
| PoC Code | Not confirmed |
SAGE Enrichment Record — provenance & audit hash
| Model | rule-based-v1 |
|---|---|
| Confidence | MEDIUM |
| Enriched At | 2026-05-24 |
| SHA-512 Audit Hash | ecc02a13587796f29df5abb7551e4f26bd3bf71a253a69daef2f2cddf49d702082eef1b17541526996c9b2cf2fb23b162760689985cd2b1c6f01a79027d99f20 |
Critical Severity - Know Your Exposure
A CVSS 10.0 vulnerability in your ICS environment cannot wait. BreachSpider maps critical CVEs to your specific assets and tells you what to fix first.
Check Your Assets Free →