Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2013-3952

The fill_pipeinfo function in bsd/kern/sys_pipe.c in the XNU kernel in Apple Mac OS X 10.8.x allows local users to defeat the KASLR protection mechanism via the PROC_PIDFDPIPEINFO option to the proc_info system call for a kernel pipe handle.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.9%
CVSS Severity
CVSS v2 Score 2.1
Products affected by CVE-2013-3952
  • Apple » Mac Os X » Version: 10.8.0
    cpe:2.3:o:apple:mac_os_x:10.8.0
  • Apple » Mac Os X » Version: 10.8.1
    cpe:2.3:o:apple:mac_os_x:10.8.1
  • Apple » Mac Os X » Version: 10.8.2
    cpe:2.3:o:apple:mac_os_x:10.8.2
  • Apple » Mac Os X » Version: 10.8.3
    cpe:2.3:o:apple:mac_os_x:10.8.3
  • Apple » Mac Os X » Version: 10.8.4
    cpe:2.3:o:apple:mac_os_x:10.8.4


Contact Us

Shodan ® - All rights reserved