CVE-2013-0979Apple Iphone OS vulnerability

CWE-2642 documents2 sources
Severity
1.9LOWNVD
EPSS
0.0%
top 89.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 20
Latest updateMay 13

Description

lockdownd in Lockdown in Apple iOS before 6.1.3 does not properly consider file types during the permission-setting step of a backup restoration, which allows local users to change the permissions of arbitrary files via a backup that contains a pathname with a symlink.

CVSS vector

AV:L/AC:M/C:N/I:P/A:NExploitability: 3.4 | Impact: 2.9

Affected Packages1 packages

NVDapple/iphone_os6.1.2+45

🔴Vulnerability Details

1
GHSA
GHSA-r947-c7qr-68gr: lockdownd in Lockdown in Apple iOS before 62022-05-13
CVE-2013-0979 — Apple Iphone OS vulnerability | cvebase