CVE-2023-25394

Videostream macOS app 0.5.0 and 0.4.3 has a Race Condition. The Updater privileged script attempts to update Videostream every 5 hours.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:getvideostream:videostream:0.4.3:*:*:*:*:macos:*:*
cpe:2.3:a:getvideostream:videostream:0.5.0:*:*:*:*:macos:*:*

History

21 Nov 2024, 07:49

Type Values Removed Values Added
References () https://danrevah.github.io/2023/05/03/CVE-2023-25394-VideoStream-LPE/ - Exploit, Third Party Advisory () https://danrevah.github.io/2023/05/03/CVE-2023-25394-VideoStream-LPE/ - Exploit, Third Party Advisory
References () https://getvideostream.com/ - Product () https://getvideostream.com/ - Product
References () https://www.kb.cert.org/vuls/id/757109 - () https://www.kb.cert.org/vuls/id/757109 -

28 Aug 2023, 18:15

Type Values Removed Values Added
References
  • (CERT-VN) https://www.kb.cert.org/vuls/id/757109 -

Information

Published : 2023-05-17 00:15

Updated : 2024-11-21 07:49


NVD link : CVE-2023-25394

Mitre link : CVE-2023-25394

CVE.ORG link : CVE-2023-25394


JSON object : View

Products Affected

getvideostream

  • videostream
CWE
CWE-367

Time-of-check Time-of-use (TOCTOU) Race Condition