216.73.216.197

CVE-2024-55968

· Published 28/01/2025 22:15 · Modified 18/02/2025 19:15

Labels: CVE-2024-55968 2025-01-28CVE-2024-55968CWE-798[email protected]

Essential information

Published
28/01/2025 22:15
Modified
18/02/2025 19:15
Author
Creator
CISA KEV
No
CWE

Description

An issue was discovered in DTEX DEC-M (DTEX Forwarder) 6.1.1. The com.dtexsystems.helper service, responsible for handling privileged operations within the macOS DTEX Event Forwarder agent, fails to implement critical client validation during XPC interprocess communication (IPC). Specifically, the service does not verify the code requirements, entitlements, security flags, or version of any client attempting to establish a connection. This lack of proper logic validation allows malicious actors to exploit the service's methods via unauthorized client connections, and escalate privileges to root by abusing the DTConnectionHelperProtocol protocol's submitQuery method over an unauthorized XPC connection.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

References