- EPSS 21.69%
- Published 30.01.2015 11:59:36
- Last modified 12.04.2025 10:46:40
LaunchServices in Apple OS X before 10.10.2 does not properly handle file-type metadata, which allows attackers to bypass the Gatekeeper protection mechanism via a crafted JAR archive.
CVE-2014-8825
- EPSS 0.05%
- Published 30.01.2015 11:59:35
- Last modified 12.04.2025 10:46:40
The kernel in Apple OS X before 10.10.2 does not properly perform identitysvc validation of certain directory-service functionality, which allows local users to gain privileges or spoof directory-service responses via unspecified vectors.
- EPSS 0.98%
- Published 30.01.2015 11:59:34
- Last modified 12.04.2025 10:46:40
The kernel in Apple OS X before 10.10.2 does not properly validate IODataQueue object metadata fields, which allows attackers to execute arbitrary code in a privileged context via a crafted app.
CVE-2014-8823
- EPSS 0.06%
- Published 30.01.2015 11:59:33
- Last modified 12.04.2025 10:46:40
The IOUSBControllerUserClient::ReadRegister function in the IOUSB controller in IOUSBFamily in Apple OS X before 10.10.2 allows local users to read data from arbitrary kernel-memory locations by leveraging root access and providing a crafted first ar...
CVE-2014-8821
- EPSS 0.06%
- Published 30.01.2015 11:59:32
- Last modified 12.04.2025 10:46:40
The Intel Graphics Driver in Apple OS X before 10.10.2 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2014-8819 and CVE-2014-8820.
- EPSS 0.98%
- Published 30.01.2015 11:59:32
- Last modified 12.04.2025 10:46:40
IOHIDFamily in Apple OS X before 10.10.2 allows attackers to execute arbitrary code in a kernel context or cause a denial of service (write to kernel memory) via a crafted app that calls an unspecified user-client method.
CVE-2014-8820
- EPSS 0.05%
- Published 30.01.2015 11:59:31
- Last modified 12.04.2025 10:46:40
The Intel Graphics Driver in Apple OS X before 10.10.2 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2014-8819 and CVE-2014-8821.
CVE-2014-8819
- EPSS 0.06%
- Published 30.01.2015 11:59:30
- Last modified 12.04.2025 10:46:40
The Intel Graphics Driver in Apple OS X before 10.10.2 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2014-8820 and CVE-2014-8821.
- EPSS 1.16%
- Published 30.01.2015 11:59:29
- Last modified 12.04.2025 10:46:40
coresymbolicationd in CoreSymbolication in Apple OS X before 10.10.2 does not verify that expected data types are present in XPC messages, which allows attackers to execute arbitrary code in a privileged context via a crafted app, as demonstrated by ...
CVE-2014-8816
- EPSS 1.58%
- Published 30.01.2015 11:59:28
- Last modified 12.04.2025 10:46:40
CoreGraphics in Apple OS X before 10.10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted PDF document.