Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and other products, does not enforce a locking protection mechanism upon being woken from sleep, which allows local users to conduct EFI flash attacks by leveraging root privileges.
The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.
Link | Tags |
---|---|
http://lists.apple.com/archives/security-announce/2015/Jun/msg00003.html | vendor advisory |
http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html | patch vendor advisory |
http://support.apple.com/kb/HT204942 | vendor advisory |
http://www.securityfocus.com/bid/75495 | vdb entry |
http://www.securitytracker.com/id/1032444 | vdb entry |
http://support.apple.com/kb/HT204934 | vendor advisory |