CVE-2015-5889
rsh in the remote_cmds component in Apple OS X before 10.11 allows local users to obtain root privileges via vectors involving environment variables.
- Affected products
- Os X
- Apple Mac Os X
- ≤ 10.10.5
- Fix
- Available
- CVSS 2.0
- 7.2 HIGH
- EPSS
- 5.1% (92th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2015-10-09
CVE-2015-5889 at NVD
15 known exploits for CVE-2015-5889
Proof-of-concept code and exploit modules indexed by Sploitus
rootOS - macOS Root Helper
Mac OS X 10.9.5 / 10.10.5 - rsh/libmalloc Privilege Escalation Exploit
Apple Mac OSX 10.9.5/10.10.5 - 'rsh/libmalloc' Local Privilege Escalation (Metasploit)
Mac OS X 10.9.5 / 10.10.5 rsh/libmalloc Privilege Escalation
Mac OS X 10.9.5 / 10.10.5 - rsh/libmalloc Privilege Escalation
Mac OS X rsh Environment Variables Privilege Elevation
Mac OS X rsh Environment Variables Privilege Elevation
Mac OS X rsh Environment Variables Privilege Elevation
Mac OS X rsh Environment Variables Privilege Elevation
Immunity Canvas: OSX_RSH_LIBMALLOC
issetugid() + rsh + libmalloc OS X Local Root Exploit
issetugid() + rsh + libmalloc OS X Local Root
Apple Mac OSX 10.9.5/10.10.5 - 'rsh/libmalloc' Local Privilege Escalation
Mac OS X 10.9.5 / 10.10.5 - rsh/libmalloc Privilege Escalation
Apple Mac OSX 10.9.510.10.5 - rshlibmalloc Local Privilege Escalation