The kernel in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-1827, CVE-2016-1829, and CVE-2016-1830.
No PoCs from references.
- https://github.com/ARPSyndicate/cvemon
- https://github.com/SideGreenHand100/bazad5
- https://github.com/bazad/rootsh
- https://github.com/berritus163t/bazad5
- https://github.com/houjingyi233/macOS-iOS-system-security
- https://github.com/michalmalik/osx-re-101
- https://github.com/stefanesser/bad-bad-apple