Vulnerability Description
An issue in Termius Version 9.9.0 through v.9.16.0 allows a physically proximate attacker to execute arbitrary code via the insecure Electron Fuses configuration.
CVSS Score
CRITICAL
Related Weaknesses (CWE)
References
- https://book.hacktricks.xyz/macos-hardening/macos-security-and-privilege-escalat
- https://sha999.medium.com/cve-2024-57061-termius-insufficient-electron-fuses-con
- https://www.electron.build/tutorials/adding-electron-fuses.html
- https://sha999.medium.com/cve-2024-57061-termius-insufficient-electron-fuses-con
FAQ
What is CVE-2024-57061?
CVE-2024-57061 is a vulnerability with a CVSS score of 9.8 (CRITICAL). An issue in Termius Version 9.9.0 through v.9.16.0 allows a physically proximate attacker to execute arbitrary code via the insecure Electron Fuses configuration.
How severe is CVE-2024-57061?
CVE-2024-57061 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2024-57061?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.