CVE-2016-4617
high
CVSS v3
8.8
CVSS v2
4.6
VIR risk
8.8
Description
An issue was discovered in certain Apple products. macOS before 10.12 is affected. The issue involves a sandbox escape related to launchctl process spawning in the "libxpc" component.
Predictions
Exploit likelihood
82%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: product-security@apple.com — https://support.apple.com/HT207170
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| macos | affected | |
References
CWEs
CWE-264
Verify integrity in audit chain (admin only). AS-IS.