CVE-2019-13014

Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool. However, the operating system may have made a copy of the privileged helper which is not removed or updated immediately. Computers may therefore still be vulnerable after upgrading to 4.4.0. Version 4.4.1 fixes this issue by removing the operating system's copy during the upgrade.
Configurations

Configuration 1 (hide)

cpe:2.3:a:obdev:little_snitch:4.4.0:*:*:*:*:*:*:*

History

07 Nov 2023, 03:03

Type Values Removed Values Added
References (MISC) https://obdev.at/cve/2019-13014-MzE24Ify4p.html - Mitigation, Vendor Advisory () https://obdev.at/cve/2019-13014-MzE24Ify4p.html -

Information

Published : 2019-08-23 17:15

Updated : 2023-12-10 12:59


NVD link : CVE-2019-13014

Mitre link : CVE-2019-13014

CVE.ORG link : CVE-2019-13014


JSON object : View

Products Affected

obdev

  • little_snitch
CWE
CWE-459

Incomplete Cleanup

CWE-264

Permissions, Privileges, and Access Controls