CVE-2014-4404: Apple OS X Heap-Based Buffer Overflow Vulnerability
Heap-based buffer overflow in IOHIDFamily in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged context via an application that provides crafted key-mapping properties.
Other sources
Heap-based buffer overflow in IOHIDFamily in Apple OS X, which affects, iOS before 8 and Apple TV before 7, allows attackers to execute arbitrary code in a privileged context.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-4404?
CVE-2014-4404 is classified as a high-severity vulnerability due to its potential to allow arbitrary code execution in a privileged context.
How do I fix CVE-2014-4404?
To fix CVE-2014-4404, users should update their Apple iOS and OS X systems to the latest versions that address this vulnerability.
Which Apple products are affected by CVE-2014-4404?
CVE-2014-4404 affects Apple iOS versions prior to 8, OS X versions prior to 10.10.3, and tvOS versions prior to 7.
What type of vulnerability is CVE-2014-4404?
CVE-2014-4404 is a heap-based buffer overflow vulnerability within the IOHIDFamily component.
Can CVE-2014-4404 be exploited remotely?
Yes, CVE-2014-4404 can be exploited remotely through crafted applications that manipulate key-mapping properties.