Mattermost Desktop App versions <=5.7.0 fail to disable certain Electron debug flags which allows for bypassing TCC restrictions on macOS.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-2213 Mattermost Desktop App versions <=5.7.0 fail to disable certain Electron debug flags which allows for bypassing TCC restrictions on macOS.
Github GHSA Github GHSA GHSA-xgqm-wp7w-mgg2 Mattermost Desktop App allows for bypassing TCC restrictions on macOS
Fixes

Solution

Update Mattermost Desktop App to versions 5.8.0 or higher.


Workaround

No workaround given by the vendor.

References
History

Wed, 07 Aug 2024 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Mattermost
Mattermost mattermost Desktop
Weaknesses NVD-CWE-noinfo
CPEs cpe:2.3:a:mattermost:mattermost_desktop:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:macos:-:*:*:*:*:*:*:*
Vendors & Products Apple
Apple macos
Mattermost
Mattermost mattermost Desktop

cve-icon MITRE

Status: PUBLISHED

Assigner: Mattermost

Published:

Updated: 2024-08-02T03:37:03.683Z

Reserved: 2024-06-14T08:22:33.357Z

Link: CVE-2024-36287

cve-icon Vulnrichment

Updated: 2024-08-02T03:37:03.683Z

cve-icon NVD

Status : Modified

Published: 2024-06-14T09:15:09.450

Modified: 2024-11-21T09:21:59.527

Link: CVE-2024-36287

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.