CVE Vulnerabilities

CVE-2015-5897

Published: Oct 09, 2015 | Modified: Dec 08, 2016
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The Address Book framework in Apple OS X before 10.11 allows local users to gain privileges by using an environment variable to inject code into processes that rely on this framework.

Affected Software

Name Vendor Start Version End Version
Mac_os_x Apple * 10.10.5 (including)

References