PT-2019-13080 · Objective Development · Little Snitch

Published

2019-08-23

·

Updated

2020-10-06

·

CVE-2019-13014

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Little Snitch versions prior to 4.4.1
Description A vulnerability exists in a privileged helper tool of Little Snitch. Although version 4.4.0 fixes the vulnerability, the operating system may retain a copy of the privileged helper, which is not updated or removed immediately. This means computers may still be vulnerable after upgrading to version 4.4.0.
Recommendations For versions prior to 4.4.1, update to version 4.4.1 to ensure the operating system's copy of the privileged helper is removed during the upgrade, thus resolving the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-13014

Affected Products

Little Snitch