CVE-2020-9771 is not fixed correctly (2020)
theevilbit.github.io
CVE-2020-9771 is not fixed correctly (2020)
1–7 of 7 posts
Re: CVE-2020-9771 is not fixed correctly (2020)
#2Wow. A "wontfix" for such a critical bug?
I just checked and there are quite a few apps that I've had to give full disk access to - some of which include applications running remote code or reading data from untrusted usb devices device.
Wonder what could go wrong.
Re: CVE-2020-9771 is not fixed correctly (2020)
#3Too bad this was posted on a US holiday weekend. :(
Re: CVE-2020-9771 is not fixed correctly (2020)
#4Too bad this was posted on a US holiday weekend. :(
[2020]
Re: CVE-2020-9771 is not fixed correctly (2020)
#5[deleted]
Re: CVE-2020-9771 is not fixed correctly (2020)
#6[deleted]
Re: CVE-2020-9771 is not fixed correctly (2020)
#7Full disk access bypassing user permissions ... Is bad, even if "full disk access" to the app was indeed given.
This is not obvious when you allow terminal (or any other app) the disk access.