CVE-2015-1130
Published · Updated
Patch now. It under exploitation confirmed by CISA and has a working public exploit.
Apply updates per vendor instructions.
A flaw in Apple OS X's Admin Framework allows local users to bypass authentication checks and gain administrator privileges without proper authorization. This is a privilege escalation vulnerability that affects systems before version 10.10.3.
The XPC (inter-process communication) implementation in the Admin Framework contains an authentication bypass vulnerability (CWE-59: improper link resolution) that allows authenticated local users to escalate privileges to admin level. The attack requires local access and occurs through unspecified XPC message handling vectors in the framework's privilege checking logic.
The full analysis of this CVE is available in Portuguese →