CVE-2025-4081
- EPSS 0.02%
- Veröffentlicht 29.05.2025 14:25:08
- Zuletzt bearbeitet 30.05.2025 16:31:03
Use of entitlement "com.apple.security.cs.disable-library-validation" and lack of launch and library load constraints allows to substitute a legitimate dylib with malicious one. A local attacker with unprivileged access can execute the application wi...
CVE-2025-1413
- EPSS 0.03%
- Veröffentlicht 28.02.2025 09:15:11
- Zuletzt bearbeitet 03.10.2025 09:15:36
DaVinci Resolve on MacOS was found to be installed with incorrect file permissions (rwxrwxrwx). This is inconsistent with standard macOS security practices, where applications should have drwxr-xr-x permissions. Incorrect permissions allow for Dylib ...
CVE-2021-40417
- EPSS 1.54%
- Veröffentlicht 22.12.2021 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:24:05
When parsing a file that is submitted to the DPDecoder service as a job, the service will use the combination of decoding parameters that were submitted with the job along with fields that were parsed for the submitted video by the R3D SDK to calcula...
CVE-2021-40418
- EPSS 1.33%
- Veröffentlicht 22.12.2021 19:15:11
- Zuletzt bearbeitet 21.11.2024 06:24:05
When parsing a file that is submitted to the DPDecoder service as a job, the R3D SDK will mistakenly skip over the assignment of a property containing an object referring to a UUID that was parsed from a frame within the video container. Upon destruc...