Unrated severityOSV Advisory· Published Jun 13, 2018· Updated Aug 5, 2024
CVE-2018-10405
CVE-2018-10405
Description
An issue was discovered in Google Santa and molcodesignchecker. A maliciously crafted Universal/fat binary can evade third-party code signing checks. By not completing full inspection of the Universal/fat binary, the user of the third-party tool will believe that the code is signed by Apple, but the malicious unsigned code will execute.
Affected products
2Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.