4.7
CVSSv2

CVE-2014-4498

Published: 30/01/2015 Updated: 09/10/2015
CVSS v2 Base Score: 4.7 | Impact Score: 6.9 | Exploitability Score: 3.4
VMScore: 418
Vector: AV:L/AC:M/Au:N/C:N/I:C/A:N

Vulnerability Summary

The CPU Software in Apple OS X prior to 10.10.2 allows physically proximate malicious users to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option ROM, aka the "Thunderstrike" issue.

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x