Multiple race conditions in the Phone app in Apple iOS before 7.0.3 allow physically proximate attackers to bypass the locked state, and dial the telephone numbers in arbitrary Contacts entries, by visiting the Contacts pane.
References
Link | Resource |
---|---|
http://lists.apple.com/archives/security-announce/2013/Oct/msg00002.html | Vendor Advisory |
http://lists.apple.com/archives/security-announce/2013/Oct/msg00002.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 01:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.apple.com/archives/security-announce/2013/Oct/msg00002.html - Vendor Advisory |
Information
Published : 2013-10-24 03:48
Updated : 2024-11-21 01:57
NVD link : CVE-2013-5164
Mitre link : CVE-2013-5164
CVE.ORG link : CVE-2013-5164
JSON object : View
Products Affected
apple
- iphone_os
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')