PT-2014-5853 · Apple · Tv+2

Panguteam

·

Publicado

2014-09-18

·

Atualizado

2019-03-08

·

CVE-2014-4388

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple iOS versions prior to 8 Apple TV versions prior to 7
Description The issue is related to improper validation of IODataQueue object metadata in IOKit. This allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata fields.
Recommendations For Apple iOS versions prior to 8, update to version 8 or later. For Apple TV versions prior to 7, update to version 7 or later.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-4388

Produtos afetados

Iokit
Tv
Ios