Back to search
CVE-2012-3749
Published: Nov 3, 2012
Modified: Aug 6, 2024
PUBLISHED
Description
The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
56361
vdb-entry
x_refsource_BID
51445
third-party-advisory
x_refsource_SECUNIA
http://support.apple.com/kb/HT5567
x_refsource_CONFIRM
APPLE-SA-2012-11-01-1
vendor-advisory
x_refsource_APPLE
APPLE-SA-2013-03-14-1
vendor-advisory
x_refsource_APPLE
20121101 APPLE-SA-2012-11-01-1 iOS 6.0.1
mailing-list
x_refsource_BUGTRAQ
http://support.apple.com/kb/HT5598
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now