CVE-2015-3692
published 2015-07-03CVE-2015-3692: Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not enforce a locking protection mechanism upon being woken from sleep…
PriorityP419medium6.8CVSS 2.0
AVLACLAuSCCICAC
EPSS
0.31%
23.1th percentile
Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not enforce a locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging root privileges.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_efi_security_update_2015-001 | — | — |
| apple | mac_os_x | <= 10.10.3 | — |
| apple | os_x_yosemite_v10.10.4_and_security_update_2015-005 | — | — |
| dell | bios | <= a20 | — |
| dell | bios | <= a12 | — |
| dell | bios | <= a15 | — |
| dell | bios | <= a18 | — |
| dell | bios | <= a14 | — |
| dell | bios | <= a11 | — |
| dell | bios | <= a10 | — |
| dell | bios | <= a17 | — |
| dell | bios | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2015-3692: Mac EFI Security Update 2015-001
vendor_apple·CVSS 6.8
CVE-2015-3692 [MEDIUM] CVE-2015-3692: Mac EFI Security Update 2015-001
Apple Security Update: About the security content of Mac EFI Security Update 2015-001
Product: Mac EFI Security Update 2015-001
CVE: CVE-2015-3692
Component: CVE-ID
Apple
CVE-2015-3692: OS X Yosemite v10.10.4 and Security Update 2015-005
vendor_apple·CVSS 6.8
CVE-2015-3692 [MEDIUM] CVE-2015-3692: OS X Yosemite v10.10.4 and Security Update 2015-005
Apple Security Update: About the security content of OS X Yosemite v10.10.4 and Security Update 2015-005
Product: OS X Yosemite v10.10.4 and Security Update 2015-005
CVE: CVE-2015-3692
Component: CVE-ID
GHSA
GHSA-j3vj-cfxc-hfjx: Apple Mac EFI before 2015-001, as used in OS X before 10
ghsa_unreviewed·2022-05-17
CVE-2015-3692 [MEDIUM] CWE-284 GHSA-j3vj-cfxc-hfjx: Apple Mac EFI before 2015-001, as used in OS X before 10
Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not enforce a locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging root privileges.
GHSA
GHSA-v664-mrh9-gw5q: The BIOS implementation on Dell Latitude, OptiPlex, Precision Mobile Workstation, and Precision Workstation Client Solutions (CS) devices with model-d
ghsa_unreviewed·2022-05-13·CVSS 6.8
CVE-2015-2890 [MEDIUM] GHSA-v664-mrh9-gw5q: The BIOS implementation on Dell Latitude, OptiPlex, Precision Mobile Workstation, and Precision Workstation Client Solutions (CS) devices with model-d
The BIOS implementation on Dell Latitude, OptiPlex, Precision Mobile Workstation, and Precision Workstation Client Solutions (CS) devices with model-dependent firmware before A21 does not enforce a BIOS_CNTL locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging console access, a similar issue to CVE-2015-3692.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Jun/msg00003.htmlhttp://support.apple.com/kb/HT204934http://support.apple.com/kb/HT204942http://www.securityfocus.com/bid/75495http://www.securitytracker.com/id/1032444http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Jun/msg00003.htmlhttp://support.apple.com/kb/HT204934http://support.apple.com/kb/HT204942http://www.securityfocus.com/bid/75495http://www.securitytracker.com/id/1032444
2015-07-03
Published