Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-25w6-w4pw-wf47

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The bundle API in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 loads dynamic libraries even if the client application has not directly requested it, which allows attackers to execute arbitrary code from an untrusted bundle.

The bundle API in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 loads dynamic libraries even if the client application has not directly requested it, which allows attackers to execute arbitrary code from an untrusted bundle.

EPSS

Процентиль: 73%
0.00772
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

The bundle API in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 loads dynamic libraries even if the client application has not directly requested it, which allows attackers to execute arbitrary code from an untrusted bundle.

EPSS

Процентиль: 73%
0.00772
Низкий