CVE-2014-4499

Publication date

2015-01-30 11:00:00

Family

apple

State

PUBLISHED

Description

The App Store process in CommerceKit Framework in Apple OS X before 10.10.2 places Apple ID credentials in App Store logs, which allows local users to obtain sensitive information by reading a file.