CVE-2024-40798 – an app may be able to read Safari's browsing history
nvd.nist.gov
nvd.nist.gov
But does macOS even attempt to sandbox applications like that? I assumed it's like Windows/Linux where traditionally applications have full access to a user's data and it only attempts to protect data of other users. On Windows/Linux attempts to introduce such isolation have seen little adoption so far. Has Apple been more successful on macOS?
https://book.hacktricks.xyz/macos-hardening/macos-security-a...
It also has the concept of data that can only be read by apps that have the correctly rights - as in even if a process is running as root, the process cannot access the data.
It sounds like someone found some way to access the history data, and because they're not supposed to be able to, there's a CVE.
Of course if there was no attempt to protect the browsing history so anything/one could read it, then that would not be a vulnerability, so that's fun :-/ (as analogy: one company releases a car with a key required to open+drive, another company releases a car with no locks that anyone can get into a drive off with, and then someone finds a way to pick the lock on the former).
> This issue is fixed in macOS Sonoma 14.6, iOS 16.7.9 and iPadOS 16.7.9, macOS Monterey 12.7.6, macOS Ventura 13.6.8.
Okay now you can panic. But at least if your devices are up to date, it's fixed now...