CVE-2024-12786: X1a0He Adobe Downloader XPC Service com.x1a0he.macOS.Adobe-Downloader.helper shouldAcceptNewConnection privileges management
A vulnerability, which was classified as critical, was found in X1a0He Adobe Downloader up to 1.3.1 on macOS. Affected is the function shouldAcceptNewConnection of the file com.x1a0he.macOS.Adobe-Downloader.helper of the component XPC Service. The manipulation leads to improper privilege management. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. This product is not affiliated with the company Adobe.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-12786?
CVE-2024-12786 is classified as a critical vulnerability.
How do I fix CVE-2024-12786?
To fix CVE-2024-12786, update Adobe Downloader to the latest version beyond 1.3.1.
What is the impact of CVE-2024-12786?
The impact of CVE-2024-12786 involves improper privilege management in the X1a0He Adobe Downloader.
Which versions of X1a0He Adobe Downloader are affected by CVE-2024-12786?
Versions of X1a0He Adobe Downloader up to and including 1.3.1 are affected by CVE-2024-12786.
What component is primarily affected by CVE-2024-12786?
The primary component affected by CVE-2024-12786 is the XPC Service function shouldAcceptNewConnection.