First published: Wed Dec 16 2020(Updated: )
The installer of the macOS Sensor for VMware Carbon Black Cloud (prior to 3.5.1) handles certain files in an insecure way. A malicious actor who has local access to the endpoint on which a macOS sensor is going to be installed, may overwrite a limited number of files with output from the sensor installation.
Credit: security@vmware.com
Affected Software | Affected Version | How to fix |
---|---|---|
Carbon Black Cloud Windows Sensor | <3.5.1 | |
macOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4008 is considered a medium-severity vulnerability.
To fix CVE-2020-4008, upgrade the macOS Sensor for VMware Carbon Black Cloud to version 3.5.1 or later.
CVE-2020-4008 affects users of VMware Carbon Black Cloud versions prior to 3.5.1 installed on macOS.
CVE-2020-4008 is a file overwrite vulnerability due to insecure handling of files during the installation of the macOS Sensor.
CVE-2020-4008 cannot be exploited remotely; it requires local access to the endpoint.