CVE-2014-4352
published 2014-09-18CVE-2014-4352: Address Book in Apple iOS before 8 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obtain…
PriorityP45low2.1CVSS 2.0
AVLACLAuNCPINAN
EPSS
0.23%
14.0th percentile
Address Book in Apple iOS before 8 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obtain sensitive information by obtaining this UID.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | httpd | — | — |
| apple | iphone_os | <= 7.1.2 | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
CVSS provenance
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
vendor_apache4.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-v284-p88r-fh64: Address Book in Apple iOS before 8 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obta
ghsa_unreviewed·2022-05-17
CVE-2014-4352 [LOW] GHSA-v284-p88r-fh64: Address Book in Apple iOS before 8 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obta
Address Book in Apple iOS before 8 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obtain sensitive information by obtaining this UID.
Apache
Apache httpd: CVE-2013-4352
vendor_apache·CVSS 4.3
CVE-2013-4352 [LOW] Apache httpd: CVE-2013-4352
Apache httpd: CVE-2013-4352
A NULL pointer dereference was found in mod_cache. A malicious HTTP server could cause a crash in a caching forward proxy configuration. (Note that this vulnerability was fixed in the 2.4.7 release, but the security impact was not disclosed at the time of the release.) Reported to security team 2013-09-14 Issue public 2014-07-14 Update 2.4.7 released 2013-11-26 Affects 2.4.6
Severity: low
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://archives.neohapsis.com/archives/bugtraq/2014-09/0106.htmlhttp://support.apple.com/kb/HT6441http://www.securityfocus.com/bid/69882http://www.securityfocus.com/bid/69932http://www.securitytracker.com/id/1030866https://exchange.xforce.ibmcloud.com/vulnerabilities/96084http://archives.neohapsis.com/archives/bugtraq/2014-09/0106.htmlhttp://support.apple.com/kb/HT6441http://www.securityfocus.com/bid/69882http://www.securityfocus.com/bid/69932http://www.securitytracker.com/id/1030866https://exchange.xforce.ibmcloud.com/vulnerabilities/96084
2014-09-18
Published