vendor:
Mac OS X
by:
ianbeer
7,8
CVSS
HIGH
Use-After-Free
416
CWE
Product Name: Mac OS X
Affected Version From: ElCapitan 10.11 (15a284)
Affected Version To: ElCapitan 10.11 (15a284)
Patch Exists: YES
Related CWE: N/A
CPE: o:apple:mac_os_x:10.11
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: MacBookAir 5,2
2015
Kernel UaF with IOAccelDisplayPipeUserClient2 with spoofed no more senders notifications
Kernel UaF with IOAccelDisplayPipeUserClient2 with spoofed no more senders notifications can lead to NULL derefs and NX traps. The exploit can be reproduced by running the iospoof_ig_4 program.
Mitigation:
Update the system to the latest version of the OS.