vendor:
Mac OS X
by:
ianbeer
7,8
CVSS
HIGH
Kernel NULL dereference
476
CWE
Product Name: Mac OS X
Affected Version From: OS X 10.11 ElCapitan (15a284)
Affected Version To: OS X 10.11 ElCapitan (15a284)
Patch Exists: NO
Related CWE: N/A
CPE: o:apple:mac_os_x:10.11.6
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: OS X 10.11 ElCapitan (15a284)
2015
Opening userclient type 12 of IOSCSIPeripheralDeviceType00 leads to an exploitable kernel NULL dereference
Opening userclient type 12 of IOSCSIPeripheralDeviceType00 leads to an exploitable kernel NULL dereference. This vulnerability was tested on OS X 10.11 ElCapitan (15a284) on MacBookAir5,2.
Mitigation:
The user should avoid opening userclient type 12 of IOSCSIPeripheralDeviceType00.