Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6g4r-52jh-xv73

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an "Apply to enclosed items" action, which allows local users to bypass intended access restrictions via normal filesystem operations.

The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an "Apply to enclosed items" action, which allows local users to bypass intended access restrictions via normal filesystem operations.

EPSS

Процентиль: 21%
0.00069
Низкий

Связанные уязвимости

nvd
больше 15 лет назад

The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an "Apply to enclosed items" action, which allows local users to bypass intended access restrictions via normal filesystem operations.

EPSS

Процентиль: 21%
0.00069
Низкий