CVE-2024-13177: Symlink Following in Netskope Client Postinstall Script
Netskope Client on Mac OS is impacted by a vulnerability in which the postinstall script does not properly validate the path of the file “nsinstallation”. A standard user could potentially create a symlink of the file “nsinstallation” to escalate the privileges of a different file on the system. This issue affects Netskope Client: before 123.0, before 117.1.11.2310, before 120.1.10.2306.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-13177?
The CVE-2024-13177 vulnerability is rated high due to the potential for privilege escalation on Mac OS systems.
How do I fix CVE-2024-13177?
To fix CVE-2024-13177, update the Netskope Client to the latest version available from the vendor.
Who is affected by CVE-2024-13177?
Netskope Client versions below 123.0, 117.1.11.2310, and 120.1.10.2306 on Mac OS are affected by CVE-2024-13177.
What kind of attack can CVE-2024-13177 enable?
CVE-2024-13177 can enable an attacker to escalate their privileges by exploiting a symbolic link in the Netskope Client installation process.
Is there a workaround for CVE-2024-13177?
There are no recommended workarounds for CVE-2024-13177; the best action is to apply the software update as soon as possible.