Vulnerabilities > Objective Development

DATE CVE VULNERABILITY TITLE RISK
2018-06-12 CVE-2018-10470 Improper Verification of Cryptographic Signature vulnerability in Objective Development Little Snitch
Little Snitch versions 4.0 to 4.0.6 use the SecStaticCodeCheckValidityWithErrors() function without the kSecCSCheckAllArchitectures flag and therefore do not validate all architectures stored in a fat binary.
network
low complexity
objective-development CWE-347
5.3
2017-04-06 CVE-2017-2675 Little Snitch version 3.0 through 3.7.3 suffer from a local privilege escalation vulnerability in the installer part.
local
low complexity
objective-development obdev
7.8