Lucene search

K
nessusThis script is Copyright (C) 2013-2024 and is owned by Tenable, Inc. or an Affiliate thereof.APPLE_IOS_613_CHECK.NBIN
HistoryMar 20, 2013 - 12:00 a.m.

Apple iOS < 6.1.3 Multiple Vulnerabilities

2013-03-2000:00:00
This script is Copyright (C) 2013-2024 and is owned by Tenable, Inc. or an Affiliate thereof.
www.tenable.com
21

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.547

Percentile

97.7%

The mobile device is running a version of iOS that is older than version 6.1.3. This version contains security-related fixes for the following issues :

  • A state management error exists related to โ€˜Mach-Oโ€™ files and overlapping segments that could allow execution of unsigned code. (CVE-2013-0977)

  • An error exists related to the ARM prefetch abort handler that could allow disclosure of sensitive information. (CVE-2013-0978)

  • An error exists related to โ€˜lockdowndโ€™ and file permissions restrictions. (CVE-2013-0979)

  • An error exists related to screen locking that could allow unauthorized access. (CVE-2013-0980)

  • An error exists related to IOUSBDeviceFamily driver used pipe object pointers that could allow execution of arbitrary code. (CVE-2013-0981)

  • A variable casting error exists related to the bundled โ€˜WebKitโ€™ component and SVG handling. (CVE-2013-0912)

Binary data apple_ios_613_check.nbin

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.547

Percentile

97.7%