CVE Vulnerabilities

CVE-2014-4422

Published: Sep 18, 2014 | Modified: Mar 08, 2019
CVSS 3.x
8.1
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The kernel in Apple iOS before 8 and Apple TV before 7 uses a predictable random number generator during the early portion of the boot process, which allows attackers to bypass certain kernel-hardening protection mechanisms by using a user-space process to observe data related to the random numbers.

Affected Software

Name Vendor Start Version End Version
Tvos Apple * 6.2 (including)
Tvos Apple 6.0 (including) 6.0 (including)
Tvos Apple 6.0.1 (including) 6.0.1 (including)
Tvos Apple 6.0.2 (including) 6.0.2 (including)
Tvos Apple 6.1 (including) 6.1 (including)
Tvos Apple 6.1.1 (including) 6.1.1 (including)
Tvos Apple 6.1.2 (including) 6.1.2 (including)

References