mirror of
https://github.com/0xMarcio/cve.git
synced 2025-11-28 18:48:49 +00:00
20 lines
841 B
Markdown
20 lines
841 B
Markdown
|
|
### [CVE-2024-54471](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-54471)
|
||
|
|

|
||
|
|

|
||
|
|

|
||
|
|
|
||
|
|
### Description
|
||
|
|
|
||
|
|
This issue was addressed with additional entitlement checks. This issue is fixed in macOS Sonoma 14.7.1, macOS Ventura 13.7.1. A malicious application may be able to leak a user's credentials.
|
||
|
|
|
||
|
|
### POC
|
||
|
|
|
||
|
|
#### Reference
|
||
|
|
- https://news.ycombinator.com/item?id=43425605
|
||
|
|
- https://wts.dev/posts/password-leak/
|
||
|
|
|
||
|
|
#### Github
|
||
|
|
- https://github.com/being1943/my_rss_reader
|
||
|
|
- https://github.com/zhaoolee/garss
|
||
|
|
|