First published: Fri Jul 03 2015(Updated: )
AppleThunderboltEDMService in Apple OS X before 10.10.4 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified Thunderbolt commands.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | <=10.10.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-3678 has a medium severity rating due to its potential for privilege escalation and denial of service.
To fix CVE-2015-3678, update your macOS to version 10.10.4 or later.
CVE-2015-3678 affects users of Apple macOS versions prior to 10.10.4.
CVE-2015-3678 allows local users to gain elevated privileges or cause a denial of service through specific Thunderbolt commands.
No, CVE-2015-3678 is a local vulnerability, meaning it can only be exploited by users with local access to the machine.