vendor:
OS X and iOS
by:
ianbeer
7,8
CVSS
HIGH
Double Free
415
CWE
Product Name: OS X and iOS
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: OS X and iOS
2015
OS X and iOS kernel double free due to lack of locking in iokit registry iterator manipulation
The userspace MIG wrapper IORegistryIteratorExitEntry invokes the following kernel function which contains a double free vulnerability if two threads enter at the same time. This vulnerability can be reached from all sandboxes on OS X and iOS.
Mitigation:
N/A