Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jg9q-j4r6-mjwm

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.6

Описание

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "APFS" component. It does not properly restrict the DMA mapping time of FileVault decryption buffers, which allows attackers to read cleartext APFS data via a crafted Thunderbolt adapter.

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "APFS" component. It does not properly restrict the DMA mapping time of FileVault decryption buffers, which allows attackers to read cleartext APFS data via a crafted Thunderbolt adapter.

EPSS

Процентиль: 22%
0.00072
Низкий

4.6 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.6
nvd
около 8 лет назад

An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "APFS" component. It does not properly restrict the DMA mapping time of FileVault decryption buffers, which allows attackers to read cleartext APFS data via a crafted Thunderbolt adapter.

EPSS

Процентиль: 22%
0.00072
Низкий

4.6 Medium

CVSS3