Arbitrary Code Execution and Memory Corruption in libxpc on Apple iOS and OS X

Arbitrary Code Execution and Memory Corruption in libxpc on Apple iOS and OS X

CVE-2015-3795 · HIGH Severity

AV:N/AC:M/AU:N/C:C/I:C/A:C

libxpc in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app that sends a malformed XPC message.

Learn more about our Cis Benchmark Audit For Apple Ios.