Dylib Hijacking Vulnerability in DaVinci Resolve for macOS
CVE-2025-1413
8.4HIGH
What is CVE-2025-1413?
A vulnerability in DaVinci Resolve on macOS has been identified due to incorrect file permissions (rwxrwxrwx), breaching standard macOS security practices. This misconfiguration permits Dylib Hijacking, enabling unauthorized access and privilege escalation by guest accounts, other users, and applications. This issue is present in versions prior to 19.1.3 of DaVinci Resolve, potentially compromising the security of systems using the software.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
DaVinci Resolve MacOS 0 < 19.1.3
References
CVSS V4
Score:
8.4
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Karol Mazurek with AFINE
