Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
runner in Install.framework in the Install Framework Legacy component in Apple OS X before 10.10.5 does not properly drop privileges, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple OS X Install Framework Legacy组件任意代码执行漏洞
Vulnerability Description
Apple OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。Install Framework Legacy是其中的一个安装框架组件。 Apple OS X 10.10.5之前版本的Install Framework Legacy组件中的Install.framework文件中的‘运行程序’setuid 二进制降权方式存在安全漏洞。攻击者可借助特制的应用程序利用该漏洞以提升的权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A