CVE-2014-4498 PUBLISHED CVSS 4.699999809265137 MEDIUM

The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option ROM, aka the "Thunderstrike" issue.

EPSS 0.07% · 22.3th percentile

Risk Scores

CVSS v2.0
4.699999809265137
EPSS Score
0.07%
22.3th percentile

Affected Products

VendorProductVersions
applemac_os_x0
n/an/an/a

Timeline

References

Open in Interactive Console →