CVE-2024-44294

A path deletion vulnerability was addressed by preventing vulnerable code from running with privileges. This issue is fixed in macOS Ventura 13.7.1, macOS Sonoma 14.7.1. An attacker with root privileges may be able to delete protected system files.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

History

29 Oct 2024, 20:24

Type Values Removed Values Added
References () https://support.apple.com/en-us/121568 - () https://support.apple.com/en-us/121568 - Vendor Advisory
References () https://support.apple.com/en-us/121570 - () https://support.apple.com/en-us/121570 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5
CPE cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo
First Time Apple macos
Apple

29 Oct 2024, 14:34

Type Values Removed Values Added
Summary
  • (es) Se solucionó una vulnerabilidad de eliminación de rutas al evitar que el código vulnerable se ejecutara con privilegios. Este problema se solucionó en macOS Ventura 13.7.1 y macOS Sonoma 14.7.1. Un atacante con privilegios de superusuario podría eliminar archivos de sistema protegidos.

28 Oct 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-10-28 21:15

Updated : 2024-10-29 21:35


NVD link : CVE-2024-44294

Mitre link : CVE-2024-44294

CVE.ORG link : CVE-2024-44294


JSON object : View

Products Affected

apple

  • macos