← Back

CVE-2014-1314

nvd nist
Published: Apr 23, 2014Modified: May 6, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

WindowServer in Apple OS X through 10.9.2 does not prevent session creation by a sandboxed application, which allows attackers to bypass the sandbox protection mechanism and execute arbitrary code via a crafted application.

Affected (10)

Products: Apple: Mac Os X
1 product
Mac Os X
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Up to 10.9.2
Version 10.9.1
Version 10.9
Configuration B
7 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Version 10.8.0
Version 10.8.1
Version 10.8.2
Version 10.8.3
Version 10.8.4
Version 10.8.5
Version 10.8.5 supplemental_update

Related CWEs

References (2)

Timeline

No history available yet.