IOKit in Apple iOS before 8 and Apple TV before 7 does not properly initialize kernel memory, which allows attackers to obtain sensitive memory-content information via an application that makes crafted IOKit function calls.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/69912 | vdb entry |
http://support.apple.com/kb/HT6441 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/96078 | vdb entry |
http://www.securitytracker.com/id/1030866 | vdb entry |
http://support.apple.com/kb/HT6442 | |
http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html | vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2014-09/0107.html | vendor advisory |
http://www.securityfocus.com/bid/69882 | vdb entry |
https://support.apple.com/kb/HT6535 | vendor advisory |
http://archives.neohapsis.com/archives/bugtraq/2014-09/0106.html | vendor advisory |