CVE Vulnerabilities

CVE-2016-4678

NULL Pointer Dereference

Published: Feb 20, 2017 | Modified: Apr 20, 2025
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

An issue was discovered in certain Apple products. macOS before 10.12.1 is affected. The issue involves the AppleSMC component. It allows local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
Mac_os_xApple*10.12.0 (including)

Potential Mitigations

References