CVE-2019-13013

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/08/2019
Last modified:
07/11/2023

Description

Little Snitch versions 4.3.0 to 4.3.2 have a local privilege escalation vulnerability in their privileged helper tool. The privileged helper tool implements an XPC interface which is available to any process and allows directory listings and copying files as root.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:obdev:little_snitch:*:*:*:*:*:*:*:* 4.3.0 (including) 4.3.2 (including)
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools