CVE-2024-11467

Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successful exploitation of this issue may allow attackers with user privileges to escalate their privileges to root on the system where the Horizon Client for macOS is installed.

Credits

Omnissa would like to thank Paul Montgomery (@nullevent) of TikTok US Data Security, Red Team for reporting this issue to us.

References