PT-2019-19231 · Apple · Apple Macos
Scott Knight
+1
·
Publicado
2019-12-18
·
Atualizado
2024-08-26
·
CVE-2019-8805
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 10.15.1
Description
A validation issue existed in the entitlement verification, allowing an application to potentially execute arbitrary code with system privileges. This issue was addressed with improved validation of the process entitlement.
Recommendations
For versions prior to 10.15.1, update to macOS Catalina 10.15.1 to resolve the issue. As a temporary workaround, consider restricting access to the EndpointSecurity framework until the update is applied.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Apple Macos