header-logo
Suggest Exploit
vendor:
Mac OS X
by:
kpwn
7.2
CVSS
HIGH
Kernel Local Privilege Escalation
264
CWE
Product Name: Mac OS X
Affected Version From: OS X 10.10.5
Affected Version To: OS X 10.11
Patch Exists: YES
Related CWE: CVE-2015-????
CPE: o:apple:mac_os_x:10.10.5
Metasploit: https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2022-41722/https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2015-10082/https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2022-31631/https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2022-2880/https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2022-30580/https://www.rapid7.com/db/vulnerabilities/amazon-linux-ami-2-cve-2022-30634/https://www.rapid7.com/db/modules/exploit/linux/http/zimbra_cpio_cve_2022_41352/https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp10-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp9-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/redhat_linux-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp8-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/oracle_linux-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/ubuntu-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/alma_linux-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp11-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/huawei-euleros-2_0_sp3-cve-2015-20107/https://www.rapid7.com/db/vulnerabilities/oracle-ebs-cve-2021-2015/https://www.rapid7.com/db/modules/exploit/multi/http/qdpm_authenticated_rce/https://www.rapid7.com/db/?q=CVE-2015-&type=&page=2https://www.rapid7.com/db/?q=CVE-2015-&type=&page=3https://www.rapid7.com/db/?q=CVE-2015-&type=&page=4https://www.rapid7.com/db/?q=CVE-2015-&type=&page=2
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: OS X
2015

tpwn

This vulnerability allows an attacker to gain elevated privileges on OS X 10.10.5 systems. It was burned in 10.11. Full writeup is available at https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/37825.zip

Mitigation:

Upgrade to the latest version of OS X 10.11 or later.
Source

Exploit-DB raw data:

Source: https://github.com/kpwn/tpwn

tpwn

cve-2015-???? poc ~ os x 10.10.5 kernel local privilege escalation

vulnerability got burned in 10.11

full writeup #eta#son

shout out @ unthreadedjb 4 hax

Proof of Concept: https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/37825.zip