CVE-2015-7019Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple MAC OS X

Severity
5.6MEDIUMNVD
EPSS
0.0%
top 87.26%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 23
Latest updateMay 17

Description

The NVIDIA driver in the Graphics Drivers subsystem in Apple OS X before 10.11.1 allows local users to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read and system crash) via unspecified vectors, a different vulnerability than CVE-2015-7020.

CVSS vector

AV:L/AC:L/C:P/I:N/A:CExploitability: 3.9 | Impact: 7.8

🔴Vulnerability Details

2
GHSA
GHSA-82f4-49cm-8864: The NVIDIA driver in the Graphics Drivers subsystem in Apple OS X before 102022-05-17
GHSA
GHSA-3pfg-qjfj-vw7x: The NVIDIA driver in the Graphics Drivers subsystem in Apple OS X before 102022-05-17

📋Vendor Advisories

1
Apple
CVE-2015-7019: OS X El Capitan 10.11.1, Security Update 2015-004 Yosemite, and Security Update 2015-007 Mavericks