The kernel in Apple iOS before 9.3 and OS X before 10.11.4 allows attackers to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app.
No PoCs from references.
- https://github.com/bazad/rootsh
- https://github.com/houjingyi233/macOS-iOS-system-security