A local privilege escalation vulnerability exists in the Mac OS X version of Pixar Renderman 22.3.0's Install Helper helper tool. A user with local access can use this vulnerability to escalate their privileges to root. An attacker would need local access to the machine for a successful exploit.
The product provides an Applications Programming Interface (API) or similar interface for interaction with external actors, but the interface includes a dangerous method or function that is not properly restricted.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/107436 | vdb entry broken link |
https://talosintelligence.com/vulnerability_reports/TALOS-2019-0773 | third party advisory exploit |