CVE-2014-4353Race Condition in Apple Iphone OS

CWE-362Race Condition3 documents3 sources
Severity
4.3MEDIUMNVD
EPSS
0.5%
top 35.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 18
Latest updateMay 17

Description

Race condition in iMessage in Apple iOS before 8 allows attackers to obtain sensitive information by leveraging the presence of an attachment after the deletion of its parent (1) iMessage or (2) MMS.

CVSS vector

AV:N/AC:M/C:P/I:N/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

NVDapple/iphone_os7.1.2+9

🔴Vulnerability Details

1
GHSA
GHSA-3mwj-wx8p-p57v: Race condition in iMessage in Apple iOS before 8 allows attackers to obtain sensitive information by leveraging the presence of an attachment after th2022-05-17

📋Vendor Advisories

1
BSD
FreeBSD-SA-14:03.openssl: OpenSSL multiple vulnerabilities2014-01-14
CVE-2014-4353 — Race Condition in Apple Iphone OS | cvebase