CVE-2015-3704
EUVD-2015-374003.07.2015, 01:59
runner in Install.framework in the Install Framework Legacy subsystem in Apple OS X before 10.10.4 does not properly drop privileges, which allows attackers to execute arbitrary code in a privileged context via a crafted app.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apple | mac_os_x | 𝑥 ≤ 10.10.3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References