Apple Mac EFI Memory Corruption Vulnerability (CVE-2015-3693)
Apple Mac EFI Memory Corruption Vulnerability (CVE-2015-3693)
Release date:
Updated on:
Affected Systems:
Apple OS X <10.10.4
Description:
CVE (CAN) ID: CVE-2015-3693
IOS is an operating system developed by Apple for mobile devices. It supports iPhone, iPod touch, iPad, and Apple TV.
In versions earlier than Apple Mac EFI, when used in OS X 10.10.4 and other products, the DDR3 RAM refresh rate is not correctly set, which allows remote attackers to execute rowhammer attacks, then obtain the permission or cause a denial of service (Memory Corruption ).
<* Source: Mark Seaborn
Thomas Dullien
Link: http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html
Https://support.apple.com/zh-cn/HT204942
*>
Suggestion:
Vendor patch:
Apple
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.apple.com/support/downloads/
Https://support.apple.com/en-us/HT204950
This article permanently updates the link address: