CVE-2026-24068General

LOWCVSS 8.8 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

The VSL privileged helper does utilize NSXPC for IPC. The implementation of the "shouldAcceptNewConnection" function, which is used by the NSXPC framework to validate if a client should be allowed to connect to the XPC listener, does not validate clients at all. This means that any process can connect to this service using the configured protocol. A malicious process is able to call all the functions defined in the corresponding HelperToolProtocol. No validation is performed in the functions "writeReceiptFile" and “runUninstaller” of the HelperToolProtocol. This allows an attacker to write files to any location with any data as well as execute any file with any arguments. Any process can call these functions because of the missing XPC client validation described before. The abuse of the missing endpoint validation leads to privilege escalation.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-306

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • General: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-03-26); latest day: 1
  • 2 total mentions across 2 days

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-03-26: 1Mentions · 2026-03-27: 1Patch / Workaround · 2026-03-27: 1Technical Details · 2026-03-26: 1Technical Details · 2026-03-27: 103-2603-27
Signal classification2 categories
General
150.0%
Patch
150.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-03-261
General1
2026-03-271
Patch1
Full discourse2 posts
  • Autumn Good@autumn_good_35
    Patch

    『The vendor was unresponsive and did not respond to any of our communication attempts. Therefore, a patch is not available.』😩 CVE-2026-24068 Local Privilege Escalation in Vienna Assistant (MacOS) - Vienna Symphonic Library - SEC Consult https://sec-consult.com/vulnerability-lab/advisory/local-privilege-escalation-in-vienna-assistant-macos-vienna-symphonic-library/

    Post summary

    The vendor remains unresponsive and has not provided a patch for CVE‑2026‑24068, a local privilege escalation flaw in Vienna Assistant on macOS.

    00010282
    6.8K followersView on X
  • CVE@CVEnew
    General

    CVE-2026-24068 The VSL privileged helper does utilize NSXPC for IPC. The implementation of the "shouldAcceptNewConnection" function, which is used by the NSXPC framework to validate… https://www.cve.org/CVERecord?id=CVE-2026-24068

    Post summary

    The post only notes that CVE‑2026‑24068 involves a privileged helper using NSXPC for IPC and points to the CVE record, without providing further actionable details.

    0001065
    56.8K followersView on X

Explore more