ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to version 4.2.14, two related startup defects created a window during which only the single compile-time baseline rule was enforced by opfilter. All managed (MDM-delivered) and user-defined file-access rules were not applied until the user interacted with policies through the GUI, triggering a policy mutation over XPC. This issue has been patched in version 4.2.14.
Metrics
Affected Vendors & Products
References
History
Tue, 31 Mar 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ClearanceKit intercepts file-system access events on macOS and enforces per-process access policies. Prior to version 4.2.14, two related startup defects created a window during which only the single compile-time baseline rule was enforced by opfilter. All managed (MDM-delivered) and user-defined file-access rules were not applied until the user interacted with policies through the GUI, triggering a policy mutation over XPC. This issue has been patched in version 4.2.14. | |
| Title | ClearanceKit: Managed and user-defined policy rules not enforced between opfilter start and first policy modification | |
| Weaknesses | CWE-269 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-03-31T15:13:03.641Z
Reserved: 2026-03-26T15:57:52.324Z
Link: CVE-2026-34218
No data.
Status : Received
Published: 2026-03-31T16:16:31.670
Modified: 2026-03-31T16:16:31.670
Link: CVE-2026-34218
No data.
OpenCVE Enrichment
No data.