Source |
The Hacker News |
Identifiant |
8624016 |
Date de publication |
2024-12-12 18:05:00 (vue: 2024-12-12 13:08:06) |
Titre |
Researchers Uncover Symlink Exploit Allowing TCC Bypass in iOS and macOS |
Texte |
Details have emerged about a now-patched security vulnerability in Apple\'s iOS and macOS that, if successfully exploited, could sidestep the Transparency, Consent, and Control (TCC) framework and result in unauthorized access to sensitive information.
The flaw, tracked as CVE-2024-44131 (CVSS score: 5.3), resides in the FileProvider component, per Apple, and has been addressed with improved
Details have emerged about a now-patched security vulnerability in Apple\'s iOS and macOS that, if successfully exploited, could sidestep the Transparency, Consent, and Control (TCC) framework and result in unauthorized access to sensitive information.
The flaw, tracked as CVE-2024-44131 (CVSS score: 5.3), resides in the FileProvider component, per Apple, and has been addressed with improved |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
2024 44131 about access addressed allowing apple been bypass component consent control could cve cvss details emerged exploit exploited fileprovider flaw framework has have improved information ios macos now patched per researchers resides result score: security sensitive sidestep successfully symlink tcc tracked transparency unauthorized uncover vulnerability |
Tags |
Vulnerability
Threat
|
Stories |
|
Move |
|