
Exploit für CVE-2023-42860
Exploit für CVE-2023-42860 (nur für Forschungszwecke).
Dieser Exploit funktioniert für macOS-Versionen vor 13.3, obwohl Apples Änderungsprotokoll angibt, dass er in Version 14.1 behoben wurde.
InstallAssistant.pkg herunter.TARGET_FILE in der Datei exploit.sh auf eine SIP-geschützte Datei auf dem System (Standardziel ist die systemweite TCC-Datenbank).$ ./exploit.sh PATH_TO_PKG
/Applications/Install\ macOS\ Ventura.app/Contents/SharedSupport/SharedSupport.dmg ändern. Die Datei muss als root-Benutzer geändert werden.https://blog.kandji.io/apple-mitigates-vulnerabilities-installer-scripts