Kernel Pointer Leak Vulnerability in Trend Micro Antivirus for Mac 2020
CVE-2020-25778
6MEDIUM
Key Information:
- Vendor
- Trend Micro
- Vendor
- CVE Published:
- 14 October 2020
Summary
Trend Micro Antivirus for Mac 2020 contains a vulnerability within a specific kernel extension that can be exploited by an attacker who has gained high-privileged code execution capabilities on the system. By supplying a kernel pointer, an attacker could potentially leak sensitive memory contents, leading to unauthorized information disclosure. This vulnerability underscores the importance of maintaining stringent security practices, including regular updates and monitoring for any signs of abnormal behavior on the system.
Affected Version(s)
Trend Micro Antivirus for Mac (Consumer) 2020 (v10.x)
References
CVSS V3.1
Score:
6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved