CVE-2017-2675
7.8
Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
Little Snitch version 3.0 through 3.7.3 suffer from a local privilege escalation vulnerability in the installer part. The vulnerability is related to the installation of the configuration file "at.obdev.littlesnitchd.plist" which gets installed to /Library/LaunchDaemons.
Affected (28)
Products: Obdev: Little Snitch · Objective Development: Little Snitch
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 3.0.1 | |
| Version 3.6.2 |
References (4)
Source: office@obdev.at
Source: office@obdev.at
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.