Cryptomator through 1.6.5 allows DYLIB injection because,...
High severity
Unreviewed
Published
Feb 20, 2022
to the GitHub Advisory Database
•
Updated Aug 8, 2023
Description
Published by the National Vulnerability Database
Feb 19, 2022
Published to the GitHub Advisory Database
Feb 20, 2022
Last updated
Aug 8, 2023
Cryptomator through 1.6.5 allows DYLIB injection because, although it has the flag 0x1000 for Hardened Runtime, it has the com.apple.security.cs.disable-library-validation and com.apple.security.cs.allow-dyld-environment-variables entitlements. An attacker can exploit this by creating a malicious .dylib file that can be executed via the DYLD_INSERT_LIBRARIES environment variable.
References