The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a different vulnerability than CVE-2014-4419, CVE-2014-4420, and CVE-2014-4421.
The product does not initialize or incorrectly initializes a resource, which might leave the resource in an unexpected state when it is accessed or used.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tvos | Apple | * | 6.2 (including) |
Tvos | Apple | 6.0 (including) | 6.0 (including) |
Tvos | Apple | 6.0.1 (including) | 6.0.1 (including) |
Tvos | Apple | 6.0.2 (including) | 6.0.2 (including) |
Tvos | Apple | 6.1 (including) | 6.1 (including) |
Tvos | Apple | 6.1.1 (including) | 6.1.1 (including) |
Tvos | Apple | 6.1.2 (including) | 6.1.2 (including) |