Lucene search

K
nvd[email protected]NVD:CVE-2013-0978
HistoryMar 20, 2013 - 2:55 p.m.

CVE-2013-0978

2013-03-2014:55:04
CWE-200
web.nvd.nist.gov
5

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.5

Confidence

Low

EPSS

0

Percentile

5.1%

The ARM prefetch abort handler in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not ensure that it has been invoked in an abort context, which makes it easier for local users to bypass the ASLR protection mechanism via crafted code.

Affected configurations

Nvd
Node
appleiphone_osRange6.1.2
OR
appleiphone_osMatch1.0.0
OR
appleiphone_osMatch1.0.1
OR
appleiphone_osMatch1.0.2
OR
appleiphone_osMatch1.1.0
OR
appleiphone_osMatch1.1.0-ipodtouch
OR
appleiphone_osMatch1.1.1
OR
appleiphone_osMatch1.1.2
OR
appleiphone_osMatch1.1.2-ipodtouch
OR
appleiphone_osMatch1.1.3
OR
appleiphone_osMatch1.1.3-ipodtouch
OR
appleiphone_osMatch1.1.4
OR
appleiphone_osMatch1.1.4-ipodtouch
OR
appleiphone_osMatch1.1.5
OR
appleiphone_osMatch1.1.5-ipodtouch
OR
appleiphone_osMatch2.0
OR
appleiphone_osMatch2.0.0
OR
appleiphone_osMatch2.0.0-ipodtouch
OR
appleiphone_osMatch2.0.1
OR
appleiphone_osMatch2.0.1-ipodtouch
OR
appleiphone_osMatch2.0.2
OR
appleiphone_osMatch2.0.2-ipodtouch
OR
appleiphone_osMatch2.1
OR
appleiphone_osMatch2.1-ipodtouch
OR
appleiphone_osMatch2.1.1
OR
appleiphone_osMatch2.2
OR
appleiphone_osMatch2.2-ipodtouch
OR
appleiphone_osMatch2.2.1
OR
appleiphone_osMatch2.2.1-ipodtouch
OR
appleiphone_osMatch3.0
OR
appleiphone_osMatch3.0-ipodtouch
OR
appleiphone_osMatch3.0.1
OR
appleiphone_osMatch3.0.1-ipodtouch
OR
appleiphone_osMatch3.1
OR
appleiphone_osMatch3.1-ipodtouch
OR
appleiphone_osMatch3.1.2
OR
appleiphone_osMatch3.1.2-ipodtouch
OR
appleiphone_osMatch3.1.3
OR
appleiphone_osMatch3.1.3-ipodtouch
OR
appleiphone_osMatch3.2
OR
appleiphone_osMatch3.2-ipodtouch
OR
appleiphone_osMatch3.2.1
OR
appleiphone_osMatch3.2.1-ipad
OR
appleiphone_osMatch3.2.2
OR
appleiphone_osMatch4.0
OR
appleiphone_osMatch4.0-ipodtouch
OR
appleiphone_osMatch4.0.1
OR
appleiphone_osMatch4.0.1-ipodtouch
OR
appleiphone_osMatch4.0.2
OR
appleiphone_osMatch4.1
OR
appleiphone_osMatch4.2.1
OR
appleiphone_osMatch4.2.5
OR
appleiphone_osMatch4.2.8
OR
appleiphone_osMatch4.3.0
OR
appleiphone_osMatch4.3.1
OR
appleiphone_osMatch4.3.2
OR
appleiphone_osMatch4.3.3
OR
appleiphone_osMatch4.3.5
OR
appleiphone_osMatch4.3.5-ipad
OR
appleiphone_osMatch4.3.5-ipodtouch
OR
appleiphone_osMatch5.0
OR
appleiphone_osMatch5.0-ipad
OR
appleiphone_osMatch5.0-ipodtouch
OR
appleiphone_osMatch5.0.1
OR
appleiphone_osMatch5.0.1-ipad
OR
appleiphone_osMatch5.0.1-ipodtouch
OR
appleiphone_osMatch5.1
OR
appleiphone_osMatch5.1.1
OR
appleiphone_osMatch6.0
OR
appleiphone_osMatch6.0.1
OR
appleiphone_osMatch6.0.2
OR
appleiphone_osMatch6.1
Node
appletvosRange5.2.0
OR
appletvosMatch1.0.0
OR
appletvosMatch1.1.0
OR
appletvosMatch2.0.0
OR
appletvosMatch2.0.1
OR
appletvosMatch2.0.2
OR
appletvosMatch2.1.0
OR
appletvosMatch2.2.0
OR
appletvosMatch2.3.0
OR
appletvosMatch2.3.1
OR
appletvosMatch2.4.0
OR
appletvosMatch3.0.0
OR
appletvosMatch3.0.1
OR
appletvosMatch3.0.2
OR
appletvosMatch4.1.0
OR
appletvosMatch4.1.1
OR
appletvosMatch4.2.0
OR
appletvosMatch4.2.1
OR
appletvosMatch4.2.2
OR
appletvosMatch4.3.0
OR
appletvosMatch4.4.0
OR
appletvosMatch4.4.2
OR
appletvosMatch4.4.3
OR
appletvosMatch4.4.4
OR
appletvosMatch5.0.0
OR
appletvosMatch5.0.1
OR
appletvosMatch5.0.2
OR
appletvosMatch5.1.0
OR
appletvosMatch5.1.1
VendorProductVersionCPE
appleiphone_os*cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
appleiphone_os1.0.0cpe:2.3:o:apple:iphone_os:1.0.0:*:*:*:*:*:*:*
appleiphone_os1.0.1cpe:2.3:o:apple:iphone_os:1.0.1:*:*:*:*:*:*:*
appleiphone_os1.0.2cpe:2.3:o:apple:iphone_os:1.0.2:*:*:*:*:*:*:*
appleiphone_os1.1.0cpe:2.3:o:apple:iphone_os:1.1.0:*:*:*:*:*:*:*
appleiphone_os1.1.0cpe:2.3:o:apple:iphone_os:1.1.0:-:ipodtouch:*:*:*:*:*
appleiphone_os1.1.1cpe:2.3:o:apple:iphone_os:1.1.1:*:*:*:*:*:*:*
appleiphone_os1.1.2cpe:2.3:o:apple:iphone_os:1.1.2:*:*:*:*:*:*:*
appleiphone_os1.1.2cpe:2.3:o:apple:iphone_os:1.1.2:-:ipodtouch:*:*:*:*:*
appleiphone_os1.1.3cpe:2.3:o:apple:iphone_os:1.1.3:*:*:*:*:*:*:*
Rows per page:
1-10 of 1011

CVSS2

2.1

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:L/AC:L/Au:N/C:P/I:N/A:N

AI Score

5.5

Confidence

Low

EPSS

0

Percentile

5.1%

Related for NVD:CVE-2013-0978