This issue was addressed with improved permissions checking. This issue is fixed in macOS Sonoma 14.5, iOS 17.5 and iPadOS 17.5. A malicious app may be able to gain root privileges.
The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.
A product defines a set of insecure permissions that are inherited by objects that are created by the program.
Link | Tags |
---|---|
https://support.apple.com/en-us/HT214101 | vendor advisory |
https://support.apple.com/en-us/HT214106 | vendor advisory |
https://support.apple.com/kb/HT214106 | vendor advisory |
https://support.apple.com/kb/HT214101 | vendor advisory |