Security Advisory
CVE-2014-8825
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
The kernel in Apple OS X before 10.10.2 does not properly perform identitysvc validation of certain directory-service functionality, which allows local users to gain privileges or spoof directory-service responses via unspecified vectors.