Описание
The kernel in Apple iOS before 8.1.1 and Apple TV before 7.0.2 does not properly validate IOSharedDataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted application.
The kernel in Apple iOS before 8.1.1 and Apple TV before 7.0.2 does not properly validate IOSharedDataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted application.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2014-4461
- https://exchange.xforce.ibmcloud.com/vulnerabilities/98774
- https://support.apple.com/en-us/HT204418
- https://support.apple.com/en-us/HT204420
- https://support.apple.com/en-us/HT6590
- https://support.apple.com/en-us/HT6592
- http://lists.apple.com/archives/security-announce/2014/Nov/msg00000.html
- http://lists.apple.com/archives/security-announce/2014/Nov/msg00002.html
- http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html
- http://support.apple.com/HT204244
- http://www.securityfocus.com/bid/71136
- http://www.securitytracker.com/id/1031231
Связанные уязвимости
nvd
около 11 лет назад
The kernel in Apple iOS before 8.1.1 and Apple TV before 7.0.2 does not properly validate IOSharedDataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted application.