Vulnerabilities > Obdev > Little Snitch

DATE CVE VULNERABILITY TITLE RISK
2020-06-30 CVE-2020-13095 Link Following vulnerability in Obdev Little Snitch
Little Snitch version 4.5.1 and older changed ownership of a directory path controlled by the user.
network
low complexity
obdev CWE-59
8.8
2019-08-23 CVE-2019-13014 Incomplete Cleanup vulnerability in Obdev Little Snitch 4.4.0
Little Snitch versions 4.4.0 fixes a vulnerability in a privileged helper tool.
local
low complexity
obdev CWE-459
5.5
2019-08-23 CVE-2019-13013 Missing Authorization vulnerability in Obdev Little Snitch 4.3.0/4.3.1/4.3.2
Little Snitch versions 4.3.0 to 4.3.2 have a local privilege escalation vulnerability in their privileged helper tool.
local
low complexity
obdev CWE-862
5.5
2017-04-06 CVE-2017-2675 Little Snitch version 3.0 through 3.7.3 suffer from a local privilege escalation vulnerability in the installer part.
local
low complexity
objective-development obdev
7.8
2016-11-15 CVE-2016-8661 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Obdev Little Snitch
Little Snitch version 3.0 through 3.6.1 suffer from a buffer overflow vulnerability that could be locally exploited which could lead to an escalation of privileges (EoP) and unauthorised ring0 access to the operating system.
local
low complexity
obdev CWE-119
8.4