Show filters
158 Total Results
Displaying 71-80 of 158
Sort by:
Attacker Value
Unknown

CVE-2012-3749

Disclosure Date: November 03, 2012 (last updated October 05, 2023)
The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app.
0
Attacker Value
Unknown

CVE-2012-3745

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Off-by-one error in Telephony in Apple iOS before 6 allows remote attackers to cause a denial of service (buffer overflow and connectivity outage) via a crafted user-data header in an SMS message.
0
Attacker Value
Unknown

CVE-2012-3731

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mail in Apple iOS before 6 does not properly implement the Data Protection feature for e-mail attachments, which allows physically proximate attackers to bypass an intended passcode requirement via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-3732

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mail in Apple iOS before 6 uses an S/MIME message's From address as the displayed sender address, which allows remote attackers to spoof signed content via an e-mail message in which the From field does not match the signer's identity.
0
Attacker Value
Unknown

CVE-2012-3724

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
CFNetwork in Apple iOS before 6 does not properly identify the host portion of a URL, which allows remote attackers to obtain sensitive information by leveraging the construction of an HTTP request with an incorrect hostname derived from a malformed URL.
0
Attacker Value
Unknown

CVE-2012-3728

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The kernel in Apple iOS before 6 dereferences invalid pointers during the handling of packet-filter data structures, which allows local users to gain privileges via a crafted program that makes packet-filter ioctl calls.
0
Attacker Value
Unknown

CVE-2012-3734

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Office Viewer in Apple iOS before 6 writes cleartext document data to a temporary file, which might allow local users to bypass a document's intended (1) Data Protection level or (2) encryption state by reading the temporary content.
0
Attacker Value
Unknown

CVE-2012-3741

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The Restrictions (aka Parental Controls) implementation in Apple iOS before 6 does not properly handle purchase attempts after a Disable Restrictions action, which allows local users to bypass an intended Apple ID authentication step via an app that performs purchase transactions.
0
Attacker Value
Unknown

CVE-2012-3744

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Telephony in Apple iOS before 6 uses an SMS message's return address as the displayed sender address, which allows remote attackers to spoof text communication via a message in which the return address does not match the originating address.
0
Attacker Value
Unknown

CVE-2012-3736

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The Passcode Lock implementation in Apple iOS before 6 allows physically proximate attackers to bypass an intended passcode requirement via vectors related to ending a FaceTime call.
0