vendor:
Mac OS X
by:
ianbeer
7,8
CVSS
HIGH
Use-After-Free
416
CWE
Product Name: Mac OS X
Affected Version From: ElCapitan 10.11 (15a284)
Affected Version To: ElCapitan 10.11 (15a284)
Patch Exists: NO
Related CWE: N/A
CPE: o:apple:mac_os_x:10.11
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Mac
2016
Kernel UaF with IOAccelMemoryInfoUserClient with spoofed no more senders notifications
This exploit is a kernel UaF vulnerability with IOAccelMemoryInfoUserClient with spoofed no more senders notifications. The exploit can be reproduced by running the iospoof_ig_7 program. It was tested on ElCapitan 10.11 (15a284) on MacBookAir 5,2.
Mitigation:
N/A