Description
Slate Digital Connect 1.37.0 for macOS installs a privileged helper tool, com.slatedigital.connect.privileged.helper.tool, which exposes the XPC service com.slatedigital.connect.privileged.helper.tool2. The helper validates connecting XPC clients by obtaining the client's process identifier and using it to retrieve code-signing information for the process. This PID-based client validation is subject to a time-of-check time-of-use race condition because process identifiers can be reused. A local attacker can exploit PID reuse so that validation is performed against a trusted process instead of the original connecting process. This allows unauthorized access to privileged helper functionality and may lead to local privilege escalation.
Published: 2026-06-10
Score: n/a
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The privileged helper tool com.slatedigital.connect.privileged.helper.tool, installed by Slate Digital Connect 1.37.0 for macOS, exposes the XPC service com.slatedigital.connect.privileged.helper.tool2. Validation of XPC clients relies on the client's process identifier, which is then used to retrieve code‑signing information for that process. Because operating systems can recycle process identifiers, a time‑of‑check to time‑of‑use race condition exists in this validation. A local attacker can trigger the helper to validate against a process that previously held a trusted PID, thereby gaining unauthorized access to privileged helper functionality and potentially causing local privilege escalation.

Affected Systems

Slate Digital Connect 1.37.0 for macOS is affected. The vulnerability applies to any macOS installation of this application that installs the privileged helper tool and its XPC service.

Risk and Exploitability

The EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, indicating it has not been observed in widespread exploitation. To exploit the flaw, an attacker must be able to run code locally on the same machine and manipulate PID reuse, which typically requires administrative privileges or an existing local foothold. If successful, the attacker could invoke privileged helper actions and elevate local privileges. While the local nature of the attack and lack of known public exploits reduce imminent risk, the potential impact of local privilege escalation remains significant. The vulnerability does not allow network‑based exploitation and is confined to systems running the specified version of Slate Digital Connect.

Generated by OpenCVE AI on June 10, 2026 at 13:20 UTC.

Remediation

Vendor Solution

The vendor did not respond to the disclosure attempts, and no fixed version was available at the time of publication.


OpenCVE Recommended Actions

  • Uninstall Slate Digital Connect 1.37.0 to remove the vulnerable helper tool and its XPC service.
  • If the application is required, attempt to contact Slate Digital LLC for an updated release or, as a temporary measure, disable the privileged helper by removing its launchd job with launchctl.
  • Apply general macOS hardening: limit local accounts to least privilege, disable unnecessary admin users, and monitor for unexpected helper tool activity.

Generated by OpenCVE AI on June 10, 2026 at 13:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
History

Wed, 10 Jun 2026 12:15:00 +0000

Type Values Removed Values Added
Description Slate Digital Connect 1.37.0 for macOS installs a privileged helper tool, com.slatedigital.connect.privileged.helper.tool, which exposes the XPC service com.slatedigital.connect.privileged.helper.tool2. The helper validates connecting XPC clients by obtaining the client's process identifier and using it to retrieve code-signing information for the process. This PID-based client validation is subject to a time-of-check time-of-use race condition because process identifiers can be reused. A local attacker can exploit PID reuse so that validation is performed against a trusted process instead of the original connecting process. This allows unauthorized access to privileged helper functionality and may lead to local privilege escalation.
Title Slate Digital Connect macOS XPC PID validation privilege escalation
Weaknesses CWE-367
References

Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: SEC-VLab

Published:

Updated: 2026-06-10T11:49:10.839Z

Reserved: 2026-01-21T11:29:19.853Z

Link: CVE-2026-24067

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-06-10T12:16:25.340

Modified: 2026-06-10T12:16:25.340

Link: CVE-2026-24067

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-06-10T13:30:06Z

Weaknesses