Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4r4v-x4wj-59wx

Опубликовано: 27 фев. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.5, macOS Monterey 12.3. A local user may be able to write arbitrary files.

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.5, macOS Monterey 12.3. A local user may be able to write arbitrary files.

EPSS

Процентиль: 85%
0.02476
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 5.5
nvd
почти 3 года назад

A validation issue existed in the handling of symlinks. This issue was addressed with improved validation of symlinks. This issue is fixed in Security Update 2022-003 Catalina, macOS Big Sur 11.6.5, macOS Monterey 12.3. A local user may be able to write arbitrary files.

EPSS

Процентиль: 85%
0.02476
Низкий

5.5 Medium

CVSS3

Дефекты

CWE-59