HIGH
The IOUSBDeviceFamily driver in the USB implementation in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 accesses pipe object pointers that originated in userspace, which allows local users to gain privileges via crafted code
Published Mar 20, 2013
7.2
HIGHCVSS 2.0
EPSS 0.36%
Description
The IOUSBDeviceFamily driver in the USB implementation in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 accesses pipe object pointers that originated in userspace, which allows local users to gain privileges via crafted code.
Affected products
No data.
Configuration 1
OR
- ≤ 6.1.2
- 1.0.0
- 1.0.1
- 1.0.2
- 1.1.0
- 1.1.0
- 1.1.1
- 1.1.2
- 1.1.2
- 1.1.3
- 1.1.3
- 1.1.4
- 1.1.4
- 1.1.5
- 1.1.5
- 2.0
- 2.0.0
- 2.0.0
- 2.0.1
- 2.0.1
- 2.0.2
- 2.0.2
- 2.1
- 2.1
- 2.1.1
- 2.2
- 2.2
- 2.2.1
- 2.2.1
- 3.0
- 3.0
- 3.0.1
- 3.0.1
- 3.1
- 3.1
- 3.1.2
- 3.1.2
- 3.1.3
- 3.1.3
- 3.2
- 3.2
- 3.2.1
- 3.2.1
- 3.2.2
- 4.0
- 4.0
- 4.0.1
- 4.0.1
- 4.0.2
- 4.1
- 4.2.1
- 4.2.5
- 4.2.8
- 4.3.0
- 4.3.1
- 4.3.2
- 4.3.3
- 4.3.5
- 4.3.5
- 4.3.5
- 5.0
- 5.0
- 5.0
- 5.0.1
- 5.0.1
- 5.0.1
- 5.1
- 5.1.1
- 6.0
- 6.0.1
- 6.0.2
- 6.1
Configuration 2
OR
- ≤ 5.2.0
- 1.0.0
- 1.1.0
- 2.0.0
- 2.0.1
- 2.0.2
- 2.1.0
- 2.2.0
- 2.3.0
- 2.3.1
- 2.4.0
- 3.0.0
- 3.0.1
- 3.0.2
- 4.1.0
- 4.1.1
- 4.2.0
- 4.2.1
- 4.2.2
- 4.3.0
- 4.4.0
- 4.4.2
- 4.4.3
- 4.4.4
- 5.0.0
- 5.0.1
- 5.0.2
- 5.1.0
- 5.1.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (5)
- http://lists.apple.com/archives/security-announce/2013/Mar/msg00004.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://lists.apple.com/archives/security-announce/2013/Mar/msg00005.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://support.apple.com/kb/HT5702 x_refsource_CONFIRMVendor Advisory
- http://support.apple.com/kb/HT5704 x_refsource_CONFIRMVendor Advisory
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-0992 Advisory
| Link | Providers | Tags |
|---|---|---|
| http://lists.apple.com/archives/security-announce/2013/Mar/msg00004.html | vendor-advisoryx_refsource_APPLEVendor Advisory | |
| http://lists.apple.com/archives/security-announce/2013/Mar/msg00005.html | vendor-advisoryx_refsource_APPLEVendor Advisory | |
| http://support.apple.com/kb/HT5702 | x_refsource_CONFIRMVendor Advisory | |
| http://support.apple.com/kb/HT5704 | x_refsource_CONFIRMVendor Advisory | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2013-0992 | Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published Mar 20, 2013
Updated Sep 16, 2024
Reserved Jan 10, 2013
Link CVE-2013-0981
CISA Vulnrichment
No data
Red Hat
No data
GitHub
No data