CVE-2019-8561
published 2019-12-18CVE-2019-8561: A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4. A malicious application may be able to elevate privileges.
PriorityP340high7.8CVSS 3.1
AVLACLPRNUIRSUCHIHAH
EPSS
6.58%
93.1th percentile
A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4. A malicious application may be able to elevate privileges.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | < 10.14.4 | 10.14.4 |
| apple | macos | >= unspecified < macOS Mojave 10.14.4 | macOS Mojave 10.14.4 |
| apple | macos_mojave_10.14.4_security_update_2019-002_high_sierra_security_update_2019-0 | — | — |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2019-8561: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
vendor_apple·2019-03-25·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
Apple Security Update: About the security content of macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
Product: macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 Sierra
CVE: CVE-2019-8561
Component: PackageKit
Impact: A malicious application may be able to elevate privileges
Description: A logic issue was addressed with improved validation.
GHSA
GHSA-j83x-w3fj-6vvj: A logic issue was addressed with improved validation
ghsa_unreviewed·2022-05-24
CVE-2019-8561 [MEDIUM] GHSA-j83x-w3fj-6vvj: A logic issue was addressed with improved validation
A logic issue was addressed with improved validation. This issue is fixed in macOS Mojave 10.14.4. A malicious application may be able to elevate privileges.
No detection rules found.
No public exploits indexed.
arXiv
Exposing Hidden Interfaces: LLM-Guided Type Inference for Reverse Engineering macOS Private Frameworks
arxiv_fulltext·2026-01-04
Exposing Hidden Interfaces: LLM-Guided Type Inference for Reverse Engineering macOS Private Frameworks
Exposing Hidden Interfaces: LLM-Guided Type Inference for Reverse Engineering macOS Private Frameworks
Arina Kharlamova
MBZUAI
Abu Dhabi, UAE
[email protected]
Youcheng Sun
MBZUAI
Abu Dhabi, UAE
[email protected]
Ting Yu
MBZUAI
Abu Dhabi, UAE
[email protected]
## Abstract
Private macOS frameworks underpin critical services and daemons but remain undocumented and distributed only as stripped binaries, complicating security analysis. We present MOTIF, an agentic framework that integrates tool-augmented analysis with a finetuned large language model specialized for Objective-C type inference. The agent manages runtime metadata extraction, binary inspection, and constraint checking, while the model generates candidate method signatures that are validated and r
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Sfruttamento vulnerabilità
## CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin Nov 11, 2022 Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the Powe
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Exploits & Vulnerabilities
## CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin Nov 11, 2022 Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the Powe
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Exploits & Vulnerabilities
# CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin
2022/11/11
Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the Power
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Exploits & Vulnerabilities
## CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin 2022/11/11 Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the Power
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Ausnutzung von Schwachstellen
## CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin Nov 11, 2022 Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the P
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Exploits y vulnerabilidades
## CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin Nov 11, 2022 Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the Pow
Trendmicro
CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
blogs_trendmicro·2022-11-11·CVSS 7.8
CVE-2019-8561 [HIGH] CVE-2019-8561 A Hard-to-Banish PackageKit Framework Vulnerability in macOS
Exploits & Vulnerabilities
# CVE-2019-8561: A Hard-to-Banish PackageKit Framework Vulnerability in macOS
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files).
By: Mickey Jin
Nov 11, 2022
Read time: ( words)
Save to Folio
This blog entry details our investigation of CVE-2019-8561, a vulnerability that exists in the macOS PackageKit framework, a component used to install software installer packages (PKG files). We discuss how Apple patched it, how we exploited this vulnerability after it was addressed, and how Apple patched it again.
We also disclosed more than 15 critical SIP-bypass vulnerabilities to Apple and talked about some of them at the Powe
2019-12-18
Published