Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x5qg-hvj6-xjxm

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

DiskManagementTool in the DiskManagement.framework 92.29 on Mac OS X 10.4.8 does not properly validate Bill of Materials (BOM) files, which allows attackers to gain privileges via a BOM file under /Library/Receipts/, which triggers arbitrary file permission changes upon execution of a diskutil permission repair operation.

DiskManagementTool in the DiskManagement.framework 92.29 on Mac OS X 10.4.8 does not properly validate Bill of Materials (BOM) files, which allows attackers to gain privileges via a BOM file under /Library/Receipts/, which triggers arbitrary file permission changes upon execution of a diskutil permission repair operation.

EPSS

Процентиль: 92%
0.07912
Низкий

Связанные уязвимости

nvd
около 19 лет назад

DiskManagementTool in the DiskManagement.framework 92.29 on Mac OS X 10.4.8 does not properly validate Bill of Materials (BOM) files, which allows attackers to gain privileges via a BOM file under /Library/Receipts/, which triggers arbitrary file permission changes upon execution of a diskutil permission repair operation.

EPSS

Процентиль: 92%
0.07912
Низкий