Security Advisory

CVE-2014-4498

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-01-30 11:00:00
Last updated 2024-08-06 11:20:26
Assigner apple
CVSS score not scored
State PUBLISHED

Description

The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option ROM, aka the "Thunderstrike" issue.