Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
runner in Install.framework in the Install Framework Legacy subsystem in Apple OS X before 10.10.4 does not properly drop privileges, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple OS X Install Framework Legacy子系统权限许可和访问控制漏洞
Vulnerability Description
Apple OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。 Apple OS X 10.10.4之前版本的Install Framework Legacy子系统中的Install.framework中的runner存在安全漏洞,该漏洞源于程序没有正确降低权限。攻击者可借助特制的应用程序利用该漏洞以提升的权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A