CVE-2015-1086
published 2015-04-10CVE-2015-1086: The Audio Drivers subsystem in Apple iOS before 8.3 and Apple TV before 7.2 does not properly validate IOKit object metadata, which allows attackers to execute…
PriorityP430medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.41%
33.4th percentile
The Audio Drivers subsystem in Apple iOS before 8.3 and Apple TV before 7.2 does not properly validate IOKit object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | apple_tv | — | — |
| apple | ios | — | — |
| apple | iphone_os | <= 8.2 | — |
| apple | tvos | <= 7.1 | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h4rm-4mch-g9mg: The Audio Drivers subsystem in Apple iOS before 8
ghsa_unreviewed·2022-05-14
CVE-2015-1086 [MEDIUM] CWE-20 GHSA-h4rm-4mch-g9mg: The Audio Drivers subsystem in Apple iOS before 8
The Audio Drivers subsystem in Apple iOS before 8.3 and Apple TV before 7.2 does not properly validate IOKit object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
Apple
CVE-2015-1086: Apple TV 7.2
vendor_apple·CVSS 6.9
CVE-2015-1086 [MEDIUM] CVE-2015-1086: Apple TV 7.2
Apple Security Update: About the security content of Apple TV 7.2
Product: Apple TV
Version: 7.2
CVE: CVE-2015-1086
Component: CVE-2015-1086
Apple
CVE-2015-1086: iOS 8.3
vendor_apple·CVSS 6.9
CVE-2015-1086 [MEDIUM] CVE-2015-1086: iOS 8.3
Apple Security Update: About the security content of iOS 8.3
Product: iOS
Version: 8.3
CVE: CVE-2015-1086
Component: CVE-2015-1086
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-3108 flash-plugin: information leak leading to ASLR bypass (APSB15-11)
bugzilla·2015-06-10·CVSS 5.0
CVE-2015-3108 [MEDIUM] CVE-2015-3108 flash-plugin: information leak leading to ASLR bypass (APSB15-11)
CVE-2015-3108 flash-plugin: information leak leading to ASLR bypass (APSB15-11)
Adobe Security Bulletin APSB15-11 for Adobe Flash Player describes a flaw that can possibly be used to bypass ASLR.
Quoting from the APSB15-11:
These updates resolve a memory leak vulnerability that could be used to bypass ASLR (CVE-2015-3108).
External References:
https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1086 https://rhn.redhat.com/errata/RHSA-2015-1086.html
Bugzilla
CVE-2015-3096 flash-plugin: cross-site request forgery against JSONP endpoints fixed in APSB15-11 (incomplete fix for CVE-2014-5333)
bugzilla·2015-06-10·CVSS 4.3
CVE-2015-3096 [MEDIUM] CVE-2015-3096 flash-plugin: cross-site request forgery against JSONP endpoints fixed in APSB15-11 (incomplete fix for CVE-2014-5333)
CVE-2015-3096 flash-plugin: cross-site request forgery against JSONP endpoints fixed in APSB15-11 (incomplete fix for CVE-2014-5333)
Adobe Security Bulletin APSB15-11 for Adobe Flash Player describes a flaw that could be exploited to bypass the fix for CVE-2014-5333.
Quoting from the APSB15-11:
These updates resolve a vulnerability (CVE-2015-3096) that could be exploited to bypass the fix for CVE-2014-5333.
External References:
https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1086 https://rhn.redhat.com/errata/RHSA-2015-1086.html
Bugzilla
CVE-2015-3098 CVE-2015-3099 CVE-2015-3102 flash-plugin: same-origin-policy bypass fixed in APSB15-11
bugzilla·2015-06-10·CVSS 5.0
CVE-2015-3098 [MEDIUM] CVE-2015-3098 CVE-2015-3099 CVE-2015-3102 flash-plugin: same-origin-policy bypass fixed in APSB15-11
CVE-2015-3098 CVE-2015-3099 CVE-2015-3102 flash-plugin: same-origin-policy bypass fixed in APSB15-11
Adobe Security Bulletin APSB15-11 for Adobe Flash Player describes multiple flaws that can possibly lead to information disclosure.
Quoting from the APSB15-11:
These updates resolve vulnerabilities that could be exploited to bypass the same-origin-policy and lead to information disclosure (CVE-2015-3098, CVE-2015-3099, CVE-2015-3102).
External References:
https://helpx.adobe.com/security/products/flash-player/apsb15-11.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 5
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1086 https://rhn.redhat.com/errata/RHSA-2015-1086.html
http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Apr/msg00003.htmlhttp://www.securitytracker.com/id/1032050https://support.apple.com/HT204661https://support.apple.com/HT204662http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Apr/msg00003.htmlhttp://www.securitytracker.com/id/1032050https://support.apple.com/HT204661https://support.apple.com/HT204662
2015-04-10
Published