The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2012-3696 | The extensions APIs in the kernel in Apple iOS before 6.0.1 provide kernel addresses in responses that contain an OSBundleMachOHeaders key, which makes it easier for remote attackers to bypass the ASLR protection mechanism via a crafted app. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apple
Published:
Updated: 2024-08-06T20:21:02.275Z
Reserved: 2012-06-19T00:00:00
Link: CVE-2012-3749
No data.
Status : Deferred
Published: 2012-11-03T17:55:01.797
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-3749
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD