CVE-2014-1255 PUBLISHED CVSS 7.5 HIGH

Apple Type Services (ATS) in Apple OS X before 10.9.2 does not properly validate calls to the free function, which allows attackers to bypass the App Sandbox protection mechanism via crafted Mach messages.

EPSS 0.30% · 53.1th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
0.30%
53.1th percentile

Affected Products

VendorProductVersions
n/an/an/a
applemac_os_x0, 10.9

Timeline

References

Open in Interactive Console →