4.3
CVSSv2

CVE-2016-1758

Published: 24/03/2016 Updated: 03/12/2016
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 3.3 | Impact Score: 1.4 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The kernel in Apple iOS prior to 9.3 and OS X prior to 10.11.4 allows malicious users to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple iphone os

apple mac os x

Github Repositories

Local privilege escalation for OS X 10.10.5 via CVE-2016-1828.

rootsh rootsh is a local privilege escalation targeting OS X Yosemite 10105 build 14F27 It exploits CVE-2016-1758 and CVE-2016-1828, two vulnerabilities in XNU that were patched in OS X El Capitan 10114 and 10115 rootsh will not work on platforms with SMAP enabled CVE-2016-1758 CVE-2016-1758 is an information leak caused by copying out uninitialized bytes of kernel sta