Beveiligingsadvies

CVE-2012-3749

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2012-11-03 17:00:00
Laatst bijgewerkt 2024-08-06 20:21:02
Toegewezen door apple
CVSS-score geen score
Status PUBLISHED

Beschrijving

The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app.