Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-4391
Description:The Code Signing feature in Apple OS X before 10.10 does not properly handle incomplete resource envelopes in signed bundles, which allows remote attackers to bypass intended app-author restrictions by omitting an execution-related resource.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-4391
http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html
BugTraq ID: 70637
http://www.securityfocus.com/bid/70637
http://www.securitytracker.com/id/1031063
XForce ISS Database: macosx-cve20144391-sec-bypass(97644)
https://exchange.xforce.ibmcloud.com/vulnerabilities/97644




© 1998-2025 E-Soft Inc. All rights reserved.