ZeroHour

CVE-2019-13013

CVSS 3.1
5.5 medium
EPSS
<1%p23
Published
()
Modified
Description

Little Snitch versions 4.3.0 to 4.3.2 have a local privilege escalation vulnerability in their privileged helper tool. The privileged helper tool implements an XPC interface which is available to any process and allows directory listings and copying files as root.

Vendors
obdev
Products
little snitch
Weakness
CWE-264, CWE-862
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.