Mac OS X Multiple Vulnerabilities (Security Update 2014-001) (BEAST)

This script is Copyright (C) 2014-2016 Tenable Network Security, Inc.

Synopsis :

The remote host is missing a Mac OS X update that fixes multiple
security vulnerabilities.

Description :

The remote host is running a version of Mac OS X 10.7 or 10.8 that
does not have Security Update 2014-001 applied. This update contains
several security-related fixes for the following components :

- Apache
- App Sandbox
- Certificate Trust Policy
- CFNetwork Cookies
- CoreAnimation
- Date and Time
- File Bookmark
- ImageIO
- IOSerialFamily
- LaunchServices
- NVIDIA Drivers
- QuickLook
- QuickTime
- Secure Transport

Note that successful exploitation of the most serious issues could
result in arbitrary code execution.

See also :

Solution :

Install Security Update 2014-001 or later.

Risk factor :

Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 9.0
Public Exploit Available : true

Ready to Scan Unlimited IPs & Run Compliance Checks?

Upgrade to Nessus Professional today!

Buy Now

Combine the Power of Nessus with the Ease of Cloud

Start your free Nessus Cloud trial now!

Begin Free Trial