Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Gary Simon

Researcher fromSandia National Laboratories
#20710of 53,633
12.2Total CVSS
Vulnerabilities · 2
Medium
1
High
1
PT-2014-5906
7.8
2014-10-18
Apple · Os X · CVE-2014-4443
**Name of the Vulnerable Software and Affected Versions** Apple OS X versions prior to 10.10 **Description** The issue allows remote attackers to cause a denial of service, specifically a NULL pointer dereference, by sending crafted ASN.1 data. **Recommendations** For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.
PT-2014-5907
4.4
2014-10-18
Apple · Os X · CVE-2014-4444
**Name of the Vulnerable Software and Affected Versions** Apple OS X versions prior to 10.10 **Description** The issue concerns a problem where SecurityAgent in Apple OS X does not properly verify that a Kerberos ticket is associated with the correct user. This can be exploited by local users in specific situations, such as when Fast User Switching is used, allowing them to gain elevated privileges. **Recommendations** For Apple OS X versions prior to 10.10, update to version 10.10 or later to resolve the issue.