CVE-2015-1066Off-by-one Error in Apple MAC OS X

CWE-1895 documents4 sources
Severity
10.0CRITICALNVD
EPSS
1.2%
top 21.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 12
Latest updateMay 17

Description

Off-by-one error in IOAcceleratorFamily in Apple OS X through 10.10.2 allows attackers to execute arbitrary code in a privileged context via a crafted app.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages2 packages

🔴Vulnerability Details

1
GHSA
GHSA-h4vr-mppx-f2fr: Off-by-one error in IOAcceleratorFamily in Apple OS X through 102022-05-17

📋Vendor Advisories

1
Apple
CVE-2015-1066: About Security Update 2015-002

💬Community

2
Bugzilla
CVE-2015-4603 php: exception::getTraceAsString type confusion issue after unserialize2015-06-17
Bugzilla
CVE-2015-4602 php: Incomplete Class unserialization type confusion2015-06-17