CVE Reference: CVE-2013-0978

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2013-0978

Description:
The ARM prefetch abort handler in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not ensure that it has been invoked in an abort context, which makes it easier for local users to bypass the ASLR protection mechanism via crafted code.

CVE Status:
Candidate

References:

CONFIRM
  http://support.apple.com/kb/HT5702
  http://support.apple.com/kb/HT5704

APPLE
  http://lists.apple.com/archives/security-announce/2013/Mar/msg00004.html
  http://lists.apple.com/archives/security-announce/2013/Mar/msg00005.html


Return to the previous page.