VYPR
Unrated severityNVD Advisory· Published Oct 18, 2014· Updated Jun 17, 2026

CVE-2014-4391

CVE-2014-4391

Description

The Code Signing feature in Apple OS X before 10.10 does not properly handle incomplete resource envelopes in signed bundles, which allows remote attackers to bypass intended app-author restrictions by omitting an execution-related resource.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

2

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.