CVE-2015-5897
published 2015-10-09CVE-2015-5897: The Address Book framework in Apple OS X before 10.11 allows local users to gain privileges by using an environment variable to inject code into processes that…
PriorityP416medium4.6CVSS 2.0
AVLACLAuNCPIPAP
EPSS
0.35%
27.5th percentile
The Address Book framework in Apple OS X before 10.11 allows local users to gain privileges by using an environment variable to inject code into processes that rely on this framework.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | <= 10.10.5 | — |
| apple | os_x_el_capitan_v10.11 | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2015-5897: OS X El Capitan v10.11
vendor_apple·CVSS 4.6
CVE-2015-5897 [MEDIUM] CVE-2015-5897: OS X El Capitan v10.11
Apple Security Update: About the security content of OS X El Capitan v10.11
Product: OS X El Capitan v10.11
CVE: CVE-2015-5897
Component: CVE-ID
GHSA
GHSA-383m-gqrw-7qrj: The Address Book framework in Apple OS X before 10
ghsa_unreviewed·2022-05-17
CVE-2015-5897 [MEDIUM] GHSA-383m-gqrw-7qrj: The Address Book framework in Apple OS X before 10
The Address Book framework in Apple OS X before 10.11 allows local users to gain privileges by using an environment variable to inject code into processes that rely on this framework.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-10-09
Published