CVE-2016-1753
Apple OS X IOGeneralMemoryDescriptor Integer Overflow Privilege Escalation Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Multiple integer overflows in the kernel in Apple iOS before 9.3, OS X before 10.11.4, tvOS before 9.2, and watchOS before 2.2 allow attackers to execute arbitrary code in a privileged context via a crafted app.
Múltiples desbordamientos de entero en Apple iOS en versiones anteriores a 9.3, OS X en versiones anteriores a 10.11.4, tvOS en versiones anteriores a 9.2 y watchOS en versiones anteriores a 2.2 permite a atacantes ejecutar código arbitrario en un contexto privilegiado a través de una app manipulada.
This vulnerability allows local attackers to elevate privileges on vulnerable installations of Apple OS X. User interaction is required to exploit this vulnerability in that the target must open a malicious file.
The specific flaw exists within the IOGeneralMemoryDescriptor interface. The issue lies in the failure to test user-supplied input for integer overflow. An attacker can leverage this to escalate their privileges and execute code under the context of the kernel.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-01-13 CVE Reserved
- 2016-03-22 CVE Published
- 2024-08-05 CVE Updated
- 2024-11-29 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-190: Integer Overflow or Wraparound
CAPEC
References (10)
URL | Tag | Source |
---|---|---|
http://www.securitytracker.com/id/1035353 | Third Party Advisory | |
http://www.zerodayinitiative.com/advisories/ZDI-16-207 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://lists.apple.com/archives/security-announce/2016/Mar/msg00000.html | 2019-03-25 | |
http://lists.apple.com/archives/security-announce/2016/Mar/msg00001.html | 2019-03-25 | |
http://lists.apple.com/archives/security-announce/2016/Mar/msg00002.html | 2019-03-25 | |
http://lists.apple.com/archives/security-announce/2016/Mar/msg00004.html | 2019-03-25 | |
https://support.apple.com/HT206166 | 2019-03-25 | |
https://support.apple.com/HT206167 | 2019-03-25 | |
https://support.apple.com/HT206168 | 2019-03-25 | |
https://support.apple.com/HT206169 | 2019-03-25 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Apple Search vendor "Apple" | Iphone Os Search vendor "Apple" for product "Iphone Os" | < 9.3 Search vendor "Apple" for product "Iphone Os" and version " < 9.3" | - |
Affected
| ||||||
Apple Search vendor "Apple" | Mac Os X Search vendor "Apple" for product "Mac Os X" | < 10.11.4 Search vendor "Apple" for product "Mac Os X" and version " < 10.11.4" | - |
Affected
| ||||||
Apple Search vendor "Apple" | Tvos Search vendor "Apple" for product "Tvos" | < 9.2 Search vendor "Apple" for product "Tvos" and version " < 9.2" | - |
Affected
| ||||||
Apple Search vendor "Apple" | Watchos Search vendor "Apple" for product "Watchos" | < 2.2 Search vendor "Apple" for product "Watchos" and version " < 2.2" | - |
Affected
|