PT-2023-4267 · Apple · Apple Macos
Gergely Kalman
+1
·
Publicado
2023-07-24
·
Atualizado
2024-11-07
·
CVE-2023-32364
CVSS v3.1
8.6
Alta
| Vetor | AV:L/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
macOS versions prior to 13.5
Description
A logic issue was addressed with improved restrictions, allowing a sandboxed process to potentially circumvent sandbox restrictions. This issue is related to errors in security settings of the AppSandbox component in macOS, which may enable an attacker to bypass the protective mechanism of the isolated program environment.
Recommendations
For versions prior to 13.5, update to macOS Ventura 13.5 to resolve the issue. As a temporary workaround, consider restricting access to sandboxed processes until the update is applied.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Apple Macos