Lucene search

K
cve[email protected]CVE-2013-3951
HistoryJun 05, 2013 - 2:39 p.m.

CVE-2013-3951

2013-06-0514:39:55
CWE-20
web.nvd.nist.gov
32
cve-2013-3951
apple
ios 6.1.3
mac os x 10.8.x
stack_protector.c
libc
openbsd
vulnerability
nvd

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

5.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a program with a call-path beginning with the stack-guard= substring, as demonstrated by an iOS untethering attack or an attack against a setuid Mac OS X program.

Affected configurations

NVD
Node
appleiphone_osRange8.2
OR
applemac_os_xRange10.10.4
OR
applewatchosRange1.0.1
Node
appleiphone_osMatch6.1.3
OR
applemac_os_xMatch10.8.0
OR
applemac_os_xMatch10.8.1
OR
applemac_os_xMatch10.8.2
OR
applemac_os_xMatch10.8.3
OR
applemac_os_xMatch10.8.4

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

5.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%