CVE-2014-4492

Apple iOS <8.1.3, OS X <10.10.2, TV <7.0.3 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2014-4492. PoCs published by Google Security Research.

AI-analyzed exploit summary This exploit targets CVE-2014-4492 in Apple's networkd service by leveraging a heap spray technique and ROP gadgets to achieve arbitrary code execution. It uses a crafted XPC message to trigger the vulnerability and execute a command via a fake Objective-C class structure.

Description

libnetcore in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not verify that certain values have the expected data type, which allows attackers to execute arbitrary code in an _networkd context via a crafted XPC message from a sandboxed app, as demonstrated by lack of verification of the XPC dictionary data type.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Google Security Research · clocalosx
https://www.exploit-db.com/exploits/35847

This exploit targets CVE-2014-4492 in Apple's networkd service by leveraging a heap spray technique and ROP gadgets to achieve arbitrary code execution. It uses a crafted XPC message to trigger the vulnerability and execute a command via a fake Objective-C class structure.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Complex
Reliability
Reliable
Target: Apple networkd service (macOS)
No auth needed
Prerequisites: Access to the target system · Compilation with Lorgnette library
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (10)

Core 10
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/114862
Vendor Advisory x_refsource_confirm
http://support.apple.com/HT204245
Vendor Advisory x_refsource_confirm
http://support.apple.com/HT204246
Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2015/Jan/msg00001.html
Vendor Advisory x_refsource_confirm
http://support.apple.com/HT204244
Exploit exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/35847
Mailing List vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2015/Jan/msg00000.html
Vendor Advisory vendor-advisory x_refsource_apple
http://lists.apple.com/archives/security-announce/2015/Jan/msg00003.html

Scores

EPSS 0.2175
EPSS Percentile 95.9%

Details

CWE
CWE-19
Status published
Products (3)
apple/iphone_os < 8.1.2
apple/mac_os_x < 10.10.1
apple/tvos < 7.0.1
Published Jan 30, 2015
Tracked Since Feb 18, 2026