ID:9692 - Exploit for Improper Authorization in macOS - CVE-2023-42931

 
Main Vulnerability Database Exploits ID:9692 - Exploit for Improper Authorization in macOS - CVE-2023-42931

ID:9692 - Exploit for Improper Authorization in macOS - CVE-2023-42931

Published: April 9, 2024


Vulnerability identifier: #VU87755
Vulnerability risk: Low
CVE-ID: CVE-2023-42931
CWE-ID: CWE-285
Exploitation vector: Local access
Vulnerable software:
macOS

Link to public exploit:


Vulnerability description

The vulnerability allows a local application to escalate privileges on the system.

The vulnerability exists due to improper authorization checks in DiskArbitration. An unprivileged local process can obtain administrative privileges on the system.


Remediation

Install updates from vendor's website.