Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-282h-xw4x-7x34

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to gain root privileges.

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to gain root privileges.

EPSS

Процентиль: 37%
0.00157
Низкий

Дефекты

CWE-20

Связанные уязвимости

CVSS3: 7.8
nvd
почти 4 года назад

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2021-004 Mojave, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. A malicious application may be able to gain root privileges.

EPSS

Процентиль: 37%
0.00157
Низкий

Дефекты

CWE-20