Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SpotlightIndex in Apple OS X before 10.10.2 does not properly perform deserialization during access to a permission cache, which allows local users to read search results associated with other users' protected files via a Spotlight query.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple Mac OS X SpotlightIndex 安全漏洞漏洞
Vulnerability Description
Apple OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。SpotlightIndex是其中的一个能够在输入框内快速检索整个系统(包含文件、邮件和联系方式等)的组件。 Apple Mac OS X 10.10.2之前版本的SpotlightIndex组件中存在安全漏洞,该漏洞源于在访问特定缓存时,程序没有正确执行反序列化。本地攻击者可借助Spotlight查询利用该漏洞读取其他用户私有文件的搜索结果。
CVSS Information
N/A
Vulnerability Type
N/A