Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Apple MacOSX Security Updates(HT208937)-03

Information

Severity

Severity

Medium

Family

Family

Mac OS X Local Security Checks

CVSSv2 Base

CVSSv2 Base

6.8

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:P

Solution Type

Solution Type

Vendor Patch

Created

Created

5 years ago

Modified

Modified

4 years ago

Summary

This host is installed with Apple Mac OS X and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws exists due to, - Lazy FP state restore instead of eager save and restore of the state upon a context switch. Lazy restored states are potentially vulnerable to exploits where one process may infer register values of other processes through a speculative execution side channel that infers their value. - A memory corruption issue due to poor memory handling.

Affected Software

Affected Software

Apple Mac OS X versions 10.11.x through 10.11.6 build 15G21013, 10.12.x through 10.12.6 build 16G1408 and 10.13.x through 10.13.5

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Apple Mac OS X 10.13.6 or later or apply the appropriate patch for 10.11.x and 10.12.x versions. Please see the references for more information.

Common Vulnerabilities and Exposures (CVE)