CVE-2015-3760: Input Validation
Published Aug 16, 2015
·Updated
dyld in Apple OS X before 10.10.5 does not properly validate pathnames in the environment, which allows local users to gain privileges via unspecified vectors.
Affected Software
1 affected component
Apple iOS and macOS<=10.10.4
Event History
Aug 16, 2015
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-3760?
CVE-2015-3760 is considered a serious vulnerability that allows local users to gain elevated privileges.
2
How do I fix CVE-2015-3760?
To fix CVE-2015-3760, update your macOS to version 10.10.5 or later.
3
Who is affected by CVE-2015-3760?
CVE-2015-3760 affects users of Apple OS X versions prior to 10.10.5.
4
Can CVE-2015-3760 be exploited remotely?
CVE-2015-3760 cannot be exploited remotely as it requires local access to the affected system.
5
What is the impact of CVE-2015-3760 on my system?
The impact of CVE-2015-3760 could allow local attackers to execute unauthorized commands with elevated privileges.