Blog | G5 Cyber Security

A Dozen Flaws in Popular Mac Clean-Up Software Allow Local Root Access

MacPaw s CleanMyMac X software is a cleanup application for MacOS that optimizes the drives and frees up space by scanning for unused, redundant or unnecessary files and deleting them. No fewer than a dozen flaws plague 4.0 earlier versions of the software, all of them in the helper protocol functions. The helper functions run as root functions; the flaws arise from the act that they can be accessed by applications without validation thus giving those applications root access.

Source: https://threatpost.com/flaws-mac-clean-up-root/140551/

Exit mobile version