Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-27876. PoCs published by 0xilis.
AI-analyzed exploit summary This repository contains a PoC exploit for CVE-2024-27876, targeting a vulnerability in libAppleArchive. The exploit creates a malicious archive with symlinks and files designed to bypass Gatekeeper by leveraging a race condition in the archive extraction process.
Description
A race condition was addressed with improved locking. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15, macOS Sonoma 14.7, macOS Ventura 13.7, visionOS 2. Unpacking a maliciously crafted archive may allow an attacker to write arbitrary files.
Exploits (1)
This repository contains a PoC exploit for CVE-2024-27876, targeting a vulnerability in libAppleArchive. The exploit creates a malicious archive with symlinks and files designed to bypass Gatekeeper by leveraging a race condition in the archive extraction process.
References (12)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N