cbcvebase.
CVE-2014-1320
published 2014-04-23

CVE-2014-1320: IOKit in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 places kernel pointers into an object data structure, which makes it…

PriorityP414medium4.9CVSS 2.0
AVLACLAuNCCINAN
EPSS
0.37%
29.6th percentile
IOKit in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 places kernel pointers into an object data structure, which makes it easier for local users to bypass the ASLR protection mechanism by reading unspecified attributes of the object.

Affected

15 ranges
VendorProductVersion rangeFixed in
appleiphone_os<= 7.1
appleiphone_os
appleiphone_os
appleiphone_os
appleiphone_os
appleiphone_os
appleiphone_os
appleiphone_os
applemac_os_x<= 10.9.2
applemac_os_x
applemac_os_x
appletvos<= 6.1
appletvos
appletvos
appletvos

CVSS provenance

nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:C/I:N/A:N
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.