CVE-2013-1027: Apple Mac OS X

Medium severity, CVSS 6.8. EPSS: 1.6% chance of exploitation in the next 30 days.

Installer in Apple Mac OS X before 10.8.5 provides an option to continue a package's installation after encountering a revoked certificate, which might allow user-assisted remote attackers to execute arbitrary code via a crafted package.

Affected products

  • Apple Mac OS X: up to and including 10.8.4; version 10.8.0 only; version 10.8.1 only; version 10.8.2 only; version 10.8.3 only

Published 2013-09-16. Last modified 2026-06-16.