Apple OS X before 10.10.4 does not properly consider custom resource rules during app signature verification, which allows attackers to bypass intended launch restrictions via a modified app.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Mac_os_x |
Apple |
* |
10.10.3 (including) |
References