Lucene search

K
cveAppleCVE-2013-0977
HistoryOct 03, 2022 - 4:15 p.m.

CVE-2013-0977

2022-10-0316:15:03
apple
web.nvd.nist.gov
36
cve-2013-0977
dyld
file loading
vulnerability
apple
ios
apple tv
code-signing

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

5.5

Confidence

Low

EPSS

0

Percentile

5.1%

dyld in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not properly manage the state of file loading for Mach-O executable files, which allows local users to bypass intended code-signing requirements via a file that contains overlapping segments.

Affected configurations

Nvd
Node
appleiphone_osRange6.1.2
OR
appleiphone_osMatch1.0.0
OR
appleiphone_osMatch1.0.1
OR
appleiphone_osMatch1.0.2
OR
appleiphone_osMatch1.1.0
OR
appleiphone_osMatch1.1.0-ipodtouch
OR
appleiphone_osMatch1.1.1
OR
appleiphone_osMatch1.1.2
OR
appleiphone_osMatch1.1.2-ipodtouch
OR
appleiphone_osMatch1.1.3
OR
appleiphone_osMatch1.1.3-ipodtouch
OR
appleiphone_osMatch1.1.4
OR
appleiphone_osMatch1.1.4-ipodtouch
OR
appleiphone_osMatch1.1.5
OR
appleiphone_osMatch1.1.5-ipodtouch
OR
appleiphone_osMatch2.0
OR
appleiphone_osMatch2.0.0
OR
appleiphone_osMatch2.0.0-ipodtouch
OR
appleiphone_osMatch2.0.1
OR
appleiphone_osMatch2.0.1-ipodtouch
OR
appleiphone_osMatch2.0.2
OR
appleiphone_osMatch2.0.2-ipodtouch
OR
appleiphone_osMatch2.1
OR
appleiphone_osMatch2.1-ipodtouch
OR
appleiphone_osMatch2.1.1
OR
appleiphone_osMatch2.2
OR
appleiphone_osMatch2.2-ipodtouch
OR
appleiphone_osMatch2.2.1
OR
appleiphone_osMatch2.2.1-ipodtouch
OR
appleiphone_osMatch3.0
OR
appleiphone_osMatch3.0-ipodtouch
OR
appleiphone_osMatch3.0.1
OR
appleiphone_osMatch3.0.1-ipodtouch
OR
appleiphone_osMatch3.1
OR
appleiphone_osMatch3.1-ipodtouch
OR
appleiphone_osMatch3.1.2
OR
appleiphone_osMatch3.1.2-ipodtouch
OR
appleiphone_osMatch3.1.3
OR
appleiphone_osMatch3.1.3-ipodtouch
OR
appleiphone_osMatch3.2
OR
appleiphone_osMatch3.2-ipodtouch
OR
appleiphone_osMatch3.2.1
OR
appleiphone_osMatch3.2.1-ipad
OR
appleiphone_osMatch3.2.2
OR
appleiphone_osMatch4.0
OR
appleiphone_osMatch4.0-ipodtouch
OR
appleiphone_osMatch4.0.1
OR
appleiphone_osMatch4.0.1-ipodtouch
OR
appleiphone_osMatch4.0.2
OR
appleiphone_osMatch4.1
OR
appleiphone_osMatch4.2.1
OR
appleiphone_osMatch4.2.5
OR
appleiphone_osMatch4.2.8
OR
appleiphone_osMatch4.3.0
OR
appleiphone_osMatch4.3.1
OR
appleiphone_osMatch4.3.2
OR
appleiphone_osMatch4.3.3
OR
appleiphone_osMatch4.3.5
OR
appleiphone_osMatch4.3.5-ipad
OR
appleiphone_osMatch4.3.5-ipodtouch
OR
appleiphone_osMatch5.0
OR
appleiphone_osMatch5.0-ipad
OR
appleiphone_osMatch5.0-ipodtouch
OR
appleiphone_osMatch5.0.1
OR
appleiphone_osMatch5.0.1-ipad
OR
appleiphone_osMatch5.0.1-ipodtouch
OR
appleiphone_osMatch5.1
OR
appleiphone_osMatch5.1.1
OR
appleiphone_osMatch6.0
OR
appleiphone_osMatch6.0.1
OR
appleiphone_osMatch6.0.2
OR
appleiphone_osMatch6.1
Node
appletvosRange5.2.0
OR
appletvosMatch1.0.0
OR
appletvosMatch1.1.0
OR
appletvosMatch2.0.0
OR
appletvosMatch2.0.1
OR
appletvosMatch2.0.2
OR
appletvosMatch2.1.0
OR
appletvosMatch2.2.0
OR
appletvosMatch2.3.0
OR
appletvosMatch2.3.1
OR
appletvosMatch2.4.0
OR
appletvosMatch3.0.0
OR
appletvosMatch3.0.1
OR
appletvosMatch3.0.2
OR
appletvosMatch4.1.0
OR
appletvosMatch4.1.1
OR
appletvosMatch4.2.0
OR
appletvosMatch4.2.1
OR
appletvosMatch4.2.2
OR
appletvosMatch4.3.0
OR
appletvosMatch4.4.0
OR
appletvosMatch4.4.2
OR
appletvosMatch4.4.3
OR
appletvosMatch4.4.4
OR
appletvosMatch5.0.0
OR
appletvosMatch5.0.1
OR
appletvosMatch5.0.2
OR
appletvosMatch5.1.0
OR
appletvosMatch5.1.1
VendorProductVersionCPE
appleiphone_os*cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
appleiphone_os1.0.0cpe:2.3:o:apple:iphone_os:1.0.0:*:*:*:*:*:*:*
appleiphone_os1.0.1cpe:2.3:o:apple:iphone_os:1.0.1:*:*:*:*:*:*:*
appleiphone_os1.0.2cpe:2.3:o:apple:iphone_os:1.0.2:*:*:*:*:*:*:*
appleiphone_os1.1.0cpe:2.3:o:apple:iphone_os:1.1.0:*:*:*:*:*:*:*
appleiphone_os1.1.0cpe:2.3:o:apple:iphone_os:1.1.0:-:ipodtouch:*:*:*:*:*
appleiphone_os1.1.1cpe:2.3:o:apple:iphone_os:1.1.1:*:*:*:*:*:*:*
appleiphone_os1.1.2cpe:2.3:o:apple:iphone_os:1.1.2:*:*:*:*:*:*:*
appleiphone_os1.1.2cpe:2.3:o:apple:iphone_os:1.1.2:-:ipodtouch:*:*:*:*:*
appleiphone_os1.1.3cpe:2.3:o:apple:iphone_os:1.1.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 1011

CVSS2

4.6

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

AI Score

5.5

Confidence

Low

EPSS

0

Percentile

5.1%