macOS.Gatekeeper.Symbolic.Link.Security.Bypass

description-logoDescription

This indicates an attack attempt to exploit a Security Bypass Vulnerability in MacOS Gatekeeper.
The vulnerability is due to an error in the vulnerable application when handling a maliciously crafted ZIP file. A remote attacker may be able to exploit this to bypass security measures and execute arbitrary code on the system via a crafted ZIP file.

affected-products-logoAffected Products

On MacOS X version <= 10.14.5

Impact logoImpact

Security Bypass: Remote attackers can bypass security mechanism on vulnerable systems

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch or update available for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-06-19 14.635 Default_action:pass:drop
2019-06-07 14.628