CVE-2015-7044: Apple Mac OS X

High severity, CVSS 7.6. EPSS: 2.4% chance of exploitation in the next 30 days.

The System Integrity Protection feature in Apple OS X before 10.11.2 mishandles union mounts, which allows attackers to execute arbitrary code in a privileged context via a crafted app with root privileges.

Affected products

  • Apple Mac OS X: up to and including 10.11.1

Published 2015-12-11. Last modified 2026-06-17.