CVE Vulnerabilities

CVE-2011-3442

Published: Nov 11, 2011 | Modified: Feb 15, 2012
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The kernel in Apple iOS before 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute arbitrary unsigned code via a crafted app.

Affected Software

Name Vendor Start Version End Version
Iphone_os Apple 4.3.2 4.3.2
Iphone_os Apple 5.0 5.0
Iphone_os Apple 4.3.4 4.3.4
Iphone_os Apple 4.3.5 4.3.5
Iphone_os Apple 4.3.1 4.3.1
Iphone_os Apple 4.3.5 4.3.5
Iphone_os Apple 4.3.5 4.3.5
Iphone_os Apple 5.0 5.0
Iphone_os Apple 4.3.3 4.3.3
Iphone_os Apple 5.0 5.0
Iphone_os Apple 5.0 5.0
Iphone_os Apple 4.3.0 4.3.0

References