CVE Database
/

CVE-2012-3749

Back to search

CVE-2012-3749

Published: Nov 3, 2012

Modified: Aug 6, 2024

PUBLISHED

Description

The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app.

VendorProductVersions

n/a

n/a

affected
n/a

References

56361
vdb-entry
x_refsource_BID
51445
third-party-advisory
x_refsource_SECUNIA
APPLE-SA-2012-11-01-1
vendor-advisory
x_refsource_APPLE
APPLE-SA-2013-03-14-1
vendor-advisory
x_refsource_APPLE
20121101 APPLE-SA-2012-11-01-1 iOS 6.0.1
mailing-list
x_refsource_BUGTRAQ

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now