DasBrain / google-security-research

Automatically exported from code.google.com/p/google-security-research
0 stars 0 forks source link

OS X Kernel UaF due to audit session port failing to correctly account for spoofed no-more-senders notifications #567

Closed GoogleCodeExporter closed 8 years ago

GoogleCodeExporter commented 8 years ago
Kernel UaF due to audit session port failing to correctly account for spoofed 
no-more-senders notifications

Tested on ElCapitan 10.11 (15a284) on MacBookAir 5,2

Original issue reported on code.google.com by ianb...@google.com on 9 Oct 2015 at 7:44

Attachments:

GoogleCodeExporter commented 8 years ago

Original comment by ianb...@google.com on 9 Oct 2015 at 7:51

GoogleCodeExporter commented 8 years ago

Original comment by ianb...@google.com on 20 Dec 2015 at 9:24

GoogleCodeExporter commented 8 years ago
This bug was fixed as part of the fixed for CVE-2015-7047 so dup'ing into that 
issue

Original comment by ianb...@google.com on 20 Dec 2015 at 9:29

GoogleCodeExporter commented 8 years ago

Original comment by ianb...@google.com on 27 Jan 2016 at 5:13