
Exploit for CVE-2023-42860
CVE-2023-42860에 대한 익스플로잇 (연구 목적으로만 사용).
이 익스플로잇은 macOS 13.3 이전 버전에서 작동하며, Apple의 변경 로그에 따르면 버전 14.1에서 수정되었다고 합니다.
exploit.sh 파일에서 변수 TARGET_FILE을 시스템의 SIP 보호 파일로 수정합니다 (기본 대상은 시스템 TCC 데이터베이스).$ ./exploit.sh PATH_TO_PKG
/Applications/Install\ macOS\ Ventura.app/Contents/SharedSupport/SharedSupport.dmg를 통해 SIP 보호 파일을 수정할 수도 있습니다. 파일은 root 사용자로 수정해야 합니다.https://blog.kandji.io/apple-mitigates-vulnerabilities-installer-scripts