Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wc57-w9rc-p4g6

Опубликовано: 28 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. A malicious app may be able to create symlinks to protected regions of the disk.

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Ventura 13.7.3, macOS Sequoia 15.3, macOS Sonoma 14.7.3. A malicious app may be able to create symlinks to protected regions of the disk.

EPSS

Процентиль: 21%
0.00283
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-59

Связанные уязвимости

CVSS3: 4.4
nvd
больше 1 года назад

This issue was addressed with improved validation of symlinks. This issue is fixed in macOS Sequoia 15.3, macOS Sonoma 14.7.3, macOS Ventura 13.7.3. A malicious app may be able to create symlinks to protected regions of the disk.

CVSS3: 4.4
fstec
больше 1 года назад

Уязвимость компонента Login Window операционных систем macOS, позволяющая нарушителю оказать воздействие на конфиденциальность и целостность защищаемой информации

EPSS

Процентиль: 21%
0.00283
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-59