CVE-2014-4403: Apple Mac OS X

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

The kernel in Apple OS X before 10.9.5 allows local users to obtain sensitive address information and bypass the ASLR protection mechanism by leveraging predictability of the location of the CPU Global Descriptor Table.

Affected products

  • Apple Mac OS X: version 10.9 only; version 10.9.1 only; version 10.9.2 only; version 10.9.3 only; version 10.9.4 only

Published 2014-09-19. Last modified 2026-06-17.