Apple iOS Multiple Vulnerabilities
RISK: High Risk
TYPE: Operating Systems - Mobile & Apps
Multiple vulnerabilities have been identified in Apple iOS, which could be exploited by remote attackers to obtain sensitive information, bypass security restrictions or compromise a vulnerable system. These issues are caused by errors in CoreGraphics, ImageIO, libxml, Networking, Safari, WebKit, and Wi-Fi, which could allow attackers to execute arbitrary code, identify a device across connections, crash an affected application, disclose certain information, inject CSS into arbitrary documents, gain access to certain resources, or cause a device reset.
Impact
- Cross-Site Scripting
- Remote Code Execution
- Information Disclosure
- Spoofing
System / Technologies affected
- Apple iOS versions 3.0 through 4.2.1 for iPhone 3GS and later
- Apple iOS versions 3.1 through 4.2.1 for iPod touch (3rd generation) and later
- Apple iOS versions 3.2 through 4.2.1 for iPad
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Upgrade to Apple iOS 4.3.
Vulnerability Identifier
- CVE-2010-1792
- CVE-2010-1824
- CVE-2010-3855
- CVE-2010-4494
- CVE-2011-0111
- CVE-2011-0112
- CVE-2011-0113
- CVE-2011-0114
- CVE-2011-0115
- CVE-2011-0116
- CVE-2011-0117
- CVE-2011-0118
- CVE-2011-0119
- CVE-2011-0120
- CVE-2011-0121
- CVE-2011-0122
- CVE-2011-0123
- CVE-2011-0124
- CVE-2011-0125
- CVE-2011-0126
- CVE-2011-0127
- CVE-2011-0128
- CVE-2011-0129
- CVE-2011-0130
- CVE-2011-0131
- CVE-2011-0132
- CVE-2011-0133
- CVE-2011-0134
- CVE-2011-0135
- CVE-2011-0136
- CVE-2011-0137
- CVE-2011-0138
- CVE-2011-0140
- CVE-2011-0141
- CVE-2011-0142
- CVE-2011-0143
- CVE-2011-0144
- CVE-2011-0145
- CVE-2011-0146
- CVE-2011-0147
- CVE-2011-0148
- CVE-2011-0149
- CVE-2011-0150
- CVE-2011-0151
- CVE-2011-0152
- CVE-2011-0153
- CVE-2011-0154
- CVE-2011-0155
- CVE-2011-0156
- CVE-2011-0157
- CVE-2011-0158
- CVE-2011-0159
- CVE-2011-0160
- CVE-2011-0161
- CVE-2011-0162
- CVE-2011-0163
- CVE-2011-0168
- CVE-2011-0191
- CVE-2011-0192
Source
Related Link
Share with