Skip to main content

Apple iOS Multiple Vulnerabilities

Last Update Date: 13 Oct 2011 12:43 Release Date: 13 Oct 2011 4901 Views

RISK: High Risk

TYPE: Operating Systems - Mobile & Apps

TYPE: Mobile & Apps

Multiple vulnerabilities have been identified in Apple iOS 5, which can be exploited to cause sensitive information disclosure, spoofing, cross site scripting and remote code excution. These issues are caused by the errors in the following components/functions:

  • CalDAV
  • Calendar
  • CFNetwork
  • CoreFoundation
  • CoreGraphics
  • CoreMedia
  • Exchange mail cookie
  • Digital certificates
  • SSL connection
  • Home screen
  • ImageIO
  • International Components for Unicode
  • Kernel
  • Keyboards
  • libxml
  • OfficeImport
  • Safari
  • Settings
  • UIKit Alerts
  • WebKit
  • WiFi

Impact

  • Cross-Site Scripting
  • Remote Code Execution
  • Information Disclosure
  • Spoofing

System / Technologies affected

  • Apple iOS version prior to 5

 


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Upgrade to iOS 5 through iTunes.

Vulnerability Identifier


Source


Related Link