Vulnerability in Silverlight could allow security feature bypass - MS14-014 (Mac OS X)ID: oval:org.secpod.oval:def:16976 | Date: (C)2014-03-12 (M)2022-10-10 |
Class: PATCH | Family: macos |
The host is missing an important security update according to Microsoft bulletin, MS14-014. The update is required to fix security feature bypass vulnerability. A flaw is present in the application, which fails to correctly implement the DEP/ASLR security features. Successful exploitation allows attackers to more reliably predict the memory offsets of specific instructions in a given call stack.
Platform: |
Apple Mac OS X 10.8 |
Apple Mac OS X 10.9 |
Apple Mac OS X 10.10 |
Apple Mac OS X Server 10.8 |
Apple Mac OS X Server 10.9 |
Apple Mac OS X Server 10.10 |
Product: |
Microsoft Silverlight 5 for Mac |
Microsoft Silverlight 5 Developer Runtime for Mac |