CVE-2015-1100
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 1.0%
from disclosure to weapon11 days
Published on NVDApr 10
1st PoC+11d
exploitation probability
1.0%top 40% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to cause a denial of service (out-of-bounds memory access) or obtain sensitive memory-content information via a crafted app.
Affected products
n/a · n/apublic PoCs found — 2
exploitdbwww.exploit-db.com/exploits/36814unverifiedcve_referencewww.exploit-db.com/exploits/36814/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://lists.apple.com/archives/security-announce/2015/Apr/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2015/Apr/msg00002.htmlhttp://lists.apple.com/archives/security-announce/2015/Apr/msg00003.htmlhttp://m00nbsd.net/garbage/Mac-OS-X_Fat-DoS.txthttps://support.apple.com/HT204659https://support.apple.com/HT204661https://support.apple.com/HT204662https://support.apple.com/kb/HT204870https://www.exploit-db.com/exploits/36814/http://www.securitytracker.com/id/1032048