Vulnerability Description
Wacom Tablet Driver installer prior to 6.4.2-1 (for macOS) contains an improper link resolution before file access vulnerability. When a user is tricked to execute a small malicious script before executing the affected version of the installer, arbitrary code may be executed with the root privilege.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Wacom | Tablet Driver Installer | < 6.4.2-1 |
| Apple | Macos | - |
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN90278893/Third Party Advisory
- https://www.wacom.com/en-us/support/product-support/driversProduct
- https://jvn.jp/en/jp/JVN90278893/Third Party Advisory
- https://www.wacom.com/en-us/support/product-support/driversProduct
FAQ
What is CVE-2023-27529?
CVE-2023-27529 is a vulnerability with a CVSS score of 7.8 (HIGH). Wacom Tablet Driver installer prior to 6.4.2-1 (for macOS) contains an improper link resolution before file access vulnerability. When a user is tricked to execute a small malicious script before exec...
How severe is CVE-2023-27529?
CVE-2023-27529 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-27529?
Check the references section above for vendor advisories and patch information. Affected products include: Wacom Tablet Driver Installer, Apple Macos.