CVE-2014-1359: Critical severity tvos vulnerability
Published Jul 1, 2014
·Updated
Integer underflow in launchd in Apple iOS before 7.1.2, Apple OS X before 10.9.4, and Apple TV before 6.1.2 allows attackers to execute arbitrary code via a crafted application.
Affected Software
18 affected components
Apple tvOS<=6.1.1
Apple tvOS=6.0
Apple tvOS=6.0.1
Apple tvOS=6.0.2
Apple tvOS=6.1
Apple iPhone OS<=7.1.1
Apple iPhone OS=7.0
Apple iPhone OS=7.0.1
Apple iPhone OS=7.0.2
Apple iPhone OS=7.0.3
Apple iPhone OS=7.0.4
Apple iPhone OS=7.0.5
Apple iPhone OS=7.0.6
Apple iPhone OS=7.1
Apple iOS and macOS=10.9
Apple iOS and macOS=10.9.1
Apple iOS and macOS=10.9.2
Apple iOS and macOS=10.9.3
Event History
Jul 1, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-1359?
CVE-2014-1359 is classified as critical due to its potential to allow arbitrary code execution.
2
How do I fix CVE-2014-1359?
To fix CVE-2014-1359, update your affected Apple iOS, OS X, or TV OS to at least the specified patched versions.
3
Which products are affected by CVE-2014-1359?
CVE-2014-1359 affects Apple iOS versions prior to 7.1.2, Apple OS X versions prior to 10.9.4, and Apple TV versions prior to 6.1.2.
4
What type of vulnerability is CVE-2014-1359?
CVE-2014-1359 is an integer underflow vulnerability located in the launchd component.
5
Can CVE-2014-1359 be exploited remotely?
Yes, CVE-2014-1359 can potentially be exploited remotely through crafted applications.