Local Privilege Escalation in Archify Application by Oct4Pie
CVE-2024-9062
What is CVE-2024-9062?
The Archify application by Oct4Pie is exposed to a local privilege escalation vulnerability stemming from inadequate client validation in its privileged helper tool. This tool relies on the XPC interprocess communication framework and, unfortunately, lacks the necessary mechanisms to verify code signatures, entitlements, or signing flags of connecting clients. As a consequence, any local process can establish unauthorized connections to the helper utility, enabling it to execute privileged operations—such as arbitrary file deletion and permission alterations—without proper authorization. The failure to implement secure validation practices, despite the availability of mechanisms in macOS, increases the risk of exploitation, potentially compromising system integrity.
Affected Version(s)
Archify MacOS 0 <= 1.3.1