CVE Vulnerabilities

CVE-2014-1372

Published: Jul 01, 2014 | Modified: Nov 20, 2015
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.9 MEDIUM
AV:L/AC:L/Au:N/C:C/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Graphics Driver in Apple OS X before 10.9.4 does not properly restrict read operations during processing of an unspecified system call, which allows local users to obtain sensitive information from kernel memory and bypass the ASLR protection mechanism via a crafted call.

Affected Software

Name Vendor Start Version End Version
Mac_os_x Apple * 10.9.3 (including)
Mac_os_x Apple 10.8.0 (including) 10.8.0 (including)
Mac_os_x Apple 10.8.1 (including) 10.8.1 (including)
Mac_os_x Apple 10.8.2 (including) 10.8.2 (including)
Mac_os_x Apple 10.8.3 (including) 10.8.3 (including)
Mac_os_x Apple 10.8.4 (including) 10.8.4 (including)
Mac_os_x Apple 10.8.5 (including) 10.8.5 (including)
Mac_os_x Apple 10.8.5-supplemental_update (including) 10.8.5-supplemental_update (including)
Mac_os_x Apple 10.9 (including) 10.9 (including)
Mac_os_x Apple 10.9.1 (including) 10.9.1 (including)
Mac_os_x Apple 10.9.2 (including) 10.9.2 (including)

References