Vulnerabilities > CVE-2015-1130 - 7PK - Security Features vulnerability in Apple mac OS X
Attack vector
LOCAL Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges via unspecified vectors.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Exploit-Db
description Mac OS X rootpipe Local Privilege Escalation. CVE-2015-1130. Local exploit for osx platform file exploits/osx/local/36692.py id EDB-ID:36692 last seen 2016-02-04 modified 2015-04-09 platform osx port published 2015-04-09 reporter Emil Kvarnhammar source https://www.exploit-db.com/download/36692/ title Mac OS X < 10.7.5, 10.8.2, 10.9.5 10.10.2 - rootpipe Local Privilege Escalation type local description Mac OS X "Rootpipe" Privilege Escalation. CVE-2015-1130. Local exploit for osx platform id EDB-ID:36745 last seen 2016-02-04 modified 2015-04-13 published 2015-04-13 reporter metasploit source https://www.exploit-db.com/download/36745/ title Mac OS X - "Rootpipe" Privilege Escalation
Metasploit
description | This module exploits a hidden backdoor API in Apple's Admin framework on Mac OS X to escalate privileges to root, dubbed "Rootpipe." This module was tested on Yosemite 10.10.2 and should work on previous versions. The patch for this issue was not backported to older releases. Note: you must run this exploit as an admin user to escalate to root. |
id | MSF:EXPLOIT/OSX/LOCAL/ROOTPIPE |
last seen | 2020-06-10 |
modified | 2018-11-16 |
published | 2015-04-09 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/exploits/osx/local/rootpipe.rb |
title | Apple OS X Rootpipe Privilege Escalation |
Nessus
NASL family | MacOS X Local Security Checks |
NASL id | MACOSX_10_10_3.NASL |
description | The remote host is running a version of Mac OS X 10.10.x that is prior to 10.10.3. It is, therefore, affected multiple vulnerabilities in the following components : - Admin Framework - Apache - ATS - Certificate Trust Policy - CFNetwork HTTPProtocol - CFNetwork Session - CFURL - CoreAnimation - FontParser - Graphics Driver - Hypervisor - ImageIO - IOHIDFamily - Kernel - LaunchServices - libnetcore - ntp - Open Directory Client - OpenLDAP - OpenSSL - PHP - QuickLook - SceneKit - ScreenSharing - Security - Code SIgning - UniformTypeIdentifiers - WebKit Note that successful exploitation of the most serious issues can result in arbitrary code execution. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 82699 |
published | 2015-04-10 |
reporter | This script is Copyright (C) 2015-2019 and is owned by Tenable, Inc. or an Affiliate thereof. |
source | https://www.tenable.com/plugins/nessus/82699 |
title | Mac OS X 10.10.x < 10.10.3 Multiple Vulnerabilities (FREAK) |
code |
|
Packetstorm
data source https://packetstormsecurity.com/files/download/131381/rootpipe.rb.txt id PACKETSTORM:131381 last seen 2016-12-05 published 2015-04-10 reporter joev source https://packetstormsecurity.com/files/131381/Mac-OS-X-Rootpipe-Privilege-Escalation.html title Mac OS X Rootpipe Privilege Escalation data source https://packetstormsecurity.com/files/download/131368/osxrootpipe-escalate.txt id PACKETSTORM:131368 last seen 2016-12-05 published 2015-04-09 reporter Emil Kvarnhammar source https://packetstormsecurity.com/files/131368/Mac-OS-X-rootpipe-Local-Privilege-Escalation.html title Mac OS X rootpipe Local Privilege Escalation
Saint
bid | 73982 |
description | OS X rootpipe privilege elevation |
id | misc_macosx_version |
osvdb | 120418 |
title | os_x_rootpipe |
type | local |
Seebug
bulletinFamily | exploit |
description | <p>漏洞名称:Apple OS X Admin Framework 安全漏洞<br></p><p>紧急程度:高危<br></p><p>漏洞类型: 本地提权<br></p><p>详细信息:</p><p>Apple OS X是美国苹果(Apple)公司为Mac计算机所开发的一套专用操作系统。</p><p>Apple OS X 10.10.2及之前版本的Admin Framework中的XPC实现过程中存在安全漏洞。本地攻击者可利用该漏洞绕过身份验证,获取管理员权限。</p><div class="simditor-table"><br></div> |
id | SSV:89389 |
last seen | 2017-11-19 |
modified | 2015-09-10 |
published | 2015-09-10 |
reporter | public_exp |
source | https://www.seebug.org/vuldb/ssvid-89389 |
title | Mac OS X < 10.7.5, 10.8.2, 10.9.5 10.10.2 - rootpipe 本地提权漏洞 |
The Hacker News
id | THN:AC9FE9EB5F1C5B026F0BCF1D4D883160 |
last seen | 2018-01-27 |
modified | 2015-04-21 |
published | 2015-04-20 |
reporter | Swati Khandelwal |
source | https://thehackernews.com/2015/04/rootpipe-mac-os-x-vulnerability.html |
title | Apple Failed to Patch Rootpipe Mac OS X Yosemite Vulnerability |