CVE-2014-4403

Description

The kernel in Apple OS X before 10.9.5 allows local users to obtain sensitive address information and bypass the ASLR protection mechanism by leveraging predictability of the location of the CPU Global Descriptor Table.

Risk Information

Base Score
5.5
MODERATE
Vector
AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.071

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities are fixed in OS X Mavericks 10.9.5 UpdateMac
Multiple vulnerabilities are fixed in OS X Mavericks 10.9.5 Update (Combo)Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-600222OS X Mavericks 10.9.5 Update
PATCH-600223OS X Mavericks 10.9.5 Update (Combo)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234