Lucene search

K
cvelistAppleCVELIST:CVE-2014-4391
HistoryOct 18, 2014 - 1:00 a.m.

CVE-2014-4391

2014-10-1801:00:00
apple
www.cve.org
6

AI Score

8.8

Confidence

High

EPSS

0.04

Percentile

92.1%

The Code Signing feature in Apple OS X before 10.10 does not properly handle incomplete resource envelopes in signed bundles, which allows remote attackers to bypass intended app-author restrictions by omitting an execution-related resource.

AI Score

8.8

Confidence

High

EPSS

0.04

Percentile

92.1%