ID | CVE-2015-1117 | ||||||
Sažetak | The (1) setreuid and (2) setregid system-call implementations in the kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 do not properly perform privilege drops, which makes it easier for attackers to execute code with unintended user or group privileges via a crafted app. | ||||||
Reference |
|
||||||
CVSS |
|
||||||
Pristup |
|
||||||
Impact |
|
||||||
CVSS vektor | AV:L/AC:M/Au:N/C:C/I:C/A:C | ||||||
Zadnje važnije ažuriranje | 08-03-2019 - 16:06 | ||||||
Objavljeno | 10-04-2015 - 14:59 |