CVE-2014-8824

Publication date

2015-01-30 11:00:00

Family

apple

State

PUBLISHED

Description

The kernel in Apple OS X before 10.10.2 does not properly validate IODataQueue object metadata fields, which allows attackers to execute arbitrary code in a privileged context via a crafted app.