Описание
This issue was addressed with improved validation of the process entitlement and Team ID. This issue is fixed in GarageBand 10.4.9. An app may be able to gain root privileges.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 10.4.9 (исключая)
cpe:2.3:a:apple:garageband:*:*:*:*:*:*:*:*
EPSS
Процентиль: 24%
0.00082
Низкий
7.8 High
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-281
Связанные уязвимости
CVSS3: 7.8
github
около 1 года назад
This issue was addressed with improved validation of the process entitlement and Team ID. This issue is fixed in GarageBand 10.4.9. An app may be able to gain root privileges.
EPSS
Процентиль: 24%
0.00082
Низкий
7.8 High
CVSS3
Дефекты
NVD-CWE-noinfo
CWE-281