CVE-2014-1355: Null Pointer Dereference
The IOKit implementation in the kernel in Apple iOS before 7.1.2 and Apple TV before 6.1.2, and in IOReporting in Apple OS X before 10.9.4, allows local users to cause a denial of service (NULL pointer dereference and reboot) via crafted API arguments.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-1355?
CVE-2014-1355 has a critical severity rating due to its potential to cause a denial of service through crafted API arguments.
How do I fix CVE-2014-1355?
To resolve CVE-2014-1355, users should upgrade to Apple iOS version 7.1.2 or later, or update to macOS version 10.9.4 or later.
What systems are affected by CVE-2014-1355?
CVE-2014-1355 affects Apple iOS versions prior to 7.1.2, Apple TV versions before 6.1.2, and macOS versions before 10.9.4.
Can CVE-2014-1355 be exploited remotely?
CVE-2014-1355 requires local access to exploit, meaning it cannot be remotely triggered by an attacker.
What kind of issues does CVE-2014-1355 cause?
CVE-2014-1355 causes a denial of service, specifically resulting in a NULL pointer dereference and subsequent reboot.