漏洞信息详情
多款CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple产品kernel 安全漏洞
- CNNVD编号:CNNVD-201501-724
- 危害等级: 低危
- CVE编号: CVE-2014-4491
- 漏洞类型: 信息泄露
- 发布时间: 2015-01-27
- 威胁类型: 远程
- 更新时间: 2019-03-13
- 厂 商: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
- 漏洞来源: TaiG Jailbreak Te...
漏洞简介
CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple iOS、CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple TV和CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple OS X都是美国苹果(CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple)公司的产品。CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple iOS是为移动设备所开发的一套操作系统;CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple TV是一款高清电视机顶盒产品;CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple OS X是为Mac计算机所开发的一套专用操作系统。
多款CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple产品的kernel中的扩展APIs存在安全漏洞,该漏洞源于响应信息中的OSBundleMachOHeaders密钥显示地址。攻击者可借助特制的应用程序利用该漏洞绕过ASLR保护机制。以下产品和版本受到影响:CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple iOS 8.1.3之前版本,CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple TV 7.0.3之前版本,CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple OS X 10.10.2之前版本。
漏洞公告
目前厂商已经发布了升级补丁以修复此安全问题,补丁获取链接:
http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/HT204245
参考网址
来源:CONFIRM
链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/HT204244
来源:CONFIRM
链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/HT204245
来源:CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2015/Jan/msg00000.HTML
来源:CONFIRM
链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/HT204246
来源:SECTRACK
链接:http://www.securitytracker.com/id/1031650
来源:CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2015/Jan/msg00003.HTML
来源:CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2015/Jan/msg00001.HTML
受影响实体
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple_tv:7.0.2
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple iPhone_os:8.1.2
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Mac_os_x:10.10.1
补丁
- osxupd10.10.2
- iPhone7,1_8.1.3_12B466_Restore
评论