CVE-2024-1933: Improper symlink resolution in TeamViewer Remote client for macOS
Published Mar 26, 2024
·Updated
Insecure UNIX Symbolic Link (Symlink) Following in TeamViewer Remote Client prior Version 15.52 for macOS allows an attacker with unprivileged access, to potentially elevate privileges or conduct a denial-of-service-attack by overwriting the symlink.
Affected Software
1 affected component
Teamviewer Remote Client<15.52
Remediation
Information
Update to the latest version of TeamViewer Client for macOS (15.52 or higher).
Event History
Mar 26, 2024
CVE Published
via MITRE·12:47 PM
Data Sourced
via MITRE·12:47 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-1933?
CVE-2024-1933 has a medium severity rating due to the potential for privilege escalation and denial-of-service attacks.
2
How do I fix CVE-2024-1933?
To mitigate CVE-2024-1933, update the TeamViewer Remote Client to version 15.52 or later.
3
What systems are affected by CVE-2024-1933?
CVE-2024-1933 affects macOS versions of TeamViewer Remote Client prior to version 15.52.
4
Can CVE-2024-1933 be exploited remotely?
CVE-2024-1933 requires local unprivileged access to exploit the symlink vulnerability.
5
What type of attacks can CVE-2024-1933 enable?
CVE-2024-1933 can potentially allow attackers to elevate privileges or conduct denial-of-service attacks.