CVE-2013-1004
published 2013-05-20CVE-2013-1004: WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and…
PriorityP337critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
2.74%
84.5th percentile
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
Affected
127 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | iphone_os | <= 6.1.4 | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xvw5-r9xw-9jjv: WebKit, as used in Apple iTunes before 11
ghsa_unreviewed·2022-05-14
CVE-2013-1004 [HIGH] GHSA-xvw5-r9xw-9jjv: WebKit, as used in Apple iTunes before 11
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
OSV
CVE-2013-1004: WebKit, as used in Apple iTunes before 11
osv·2013-05-20·CVSS 9.3
CVE-2013-1004 [CRITICAL] CVE-2013-1004: WebKit, as used in Apple iTunes before 11
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
No detection rules found.
No public exploits indexed.
Talos
VRT-2013-1004 (CVE-2013-6490): Buffer overflow in SIMPLE header parsing
blogs_talos·2014-01-28·CVSS 10.0
CVE-2013-6490 [CRITICAL] VRT-2013-1004 (CVE-2013-6490): Buffer overflow in SIMPLE header parsing
## VRT-2013-1004 (CVE-2013-6490): Buffer overflow in SIMPLE header parsing
## Sourcefire Vulnerability Report VRT-2013-1004 (CVE-2013-6490):Buffer overflow in SIMPLE header parsing
## Description An exploitable remote code execution vulnerability exists in Pidgin's implementation of SIP/SIMPLE message handling. An attacker who can control the Content-Length of a SIP/SIMPLE message can cause an allocation to return NULL which can later be used to write into the lowest page of memory.
## Tested Versions Pidgin 2.10.7
## Coverage Prior coverage through a SIP preprocessor alert, GID 140 SID 16.
Talos
VRT-2013-1004 (CVE-2013-6490): Buffer overflow in SIMPLE header parsing
blogs_talos·2014-01-28·CVSS 10.0
CVE-2013-6490 [CRITICAL] VRT-2013-1004 (CVE-2013-6490): Buffer overflow in SIMPLE header parsing
### Sourcefire Vulnerability Report VRT-2013-1004 (CVE-2013-6490):Buffer overflow in SIMPLE header parsing
#### Description An exploitable remote code execution vulnerability exists in Pidgin's implementation of SIP/SIMPLE message handling. An attacker who can control the Content-Length of a SIP/SIMPLE message can cause an allocation to return NULL which can later be used to write into the lowest page of memory.
#### Tested Versions Pidgin 2.10.7
#### Coverage Prior coverage through a SIP preprocessor alert, GID 140 SID 16.
#### Details In sipmsg_parse_header() in file pidgin-2.10.7\libpurple\protocols\simple\sipmsg.c at line 114, the length of the message is read from an incoming message into an integer:164 tmp2 = sipmsg_find_header(msg, "Content-Length");115 if (tmp2 != NULL)116 msg-
Bugzilla
CVE-2013-1790 poppler: uninitialized memory read flaw
bugzilla·2013-03-01·CVSS 6.8
CVE-2013-1790 [MEDIUM] CVE-2013-1790 poppler: uninitialized memory read flaw
CVE-2013-1790 poppler: uninitialized memory read flaw
An uninitialized memory read flaw was reported in poppler (fixed in version 0.22.1):
Initialize refLine totally
Fixes uninitialized memory read in 1004.pdf.asan.7.3 [1]
[1] http://cgit.freedesktop.org/poppler/poppler/commit/?h=poppler-0.22&id=b1026b5978c385328f2a15a2185c599a563edf91
Discussion:
Created poppler tracking bugs for this issue
Affects: fedora-all [bug 917113]
---
poppler-0.20.2-10.fc18 has been pushed to the Fedora 18 stable repository. If problems still persist, please make note of it in this bug report.
---
poppler-0.18.4-4.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report.
---
This issue affects the version of poppler as shipped with R
http://lists.apple.com/archives/security-announce/2013/Jun/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2013/May/msg00000.htmlhttp://lists.apple.com/archives/security-announce/2013/Sep/msg00006.htmlhttp://secunia.com/advisories/54886http://support.apple.com/kb/HT5766http://support.apple.com/kb/HT5785http://support.apple.com/kb/HT5934https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17604http://lists.apple.com/archives/security-announce/2013/Jun/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2013/May/msg00000.htmlhttp://lists.apple.com/archives/security-announce/2013/Sep/msg00006.htmlhttp://secunia.com/advisories/54886http://support.apple.com/kb/HT5766http://support.apple.com/kb/HT5785http://support.apple.com/kb/HT5934https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17604
2013-05-20
Published