First published: Wed Feb 03 2010(Updated: )
Recovery Mode in Apple iPhone OS 1.0 through 3.1.2, and iPhone OS for iPod touch 1.1 through 3.1.2, allows physically proximate attackers to bypass device locking, and read or modify arbitrary data, via a USB control message that triggers memory corruption.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPhone OS | =2.0.2 | |
iPhone OS | =3.0 | |
iPhone OS | =1.0.2 | |
iPhone OS | =1.0 | |
iPhone OS | =1.1.2 | |
iPhone OS | =2.2 | |
iPhone OS | =1.1.4 | |
iPhone OS | =1.1.1 | |
iPhone OS | =3.0.1 | |
iPhone OS | =1.1.1 | |
iPhone OS | =1.0.1 | |
iPhone OS | =2.0.2 | |
iPhone OS | =2.2 | |
iPhone OS | =2.0.0 | |
iPhone OS | =3.1.2 | |
iPhone OS | =3.0.1 | |
iPhone OS | =1.1.3 | |
iPhone OS | =2.1 | |
iPhone OS | =1.1.2 | |
iPhone OS | =1.1.2 | |
iPhone OS | =1.1.3 | |
iPhone OS | =2.0.1 | |
iPhone OS | =1.1.5 | |
iPhone OS | =1.1 | |
iPhone OS | =1.1.0 | |
iPhone OS | =2.0.1 | |
iPhone OS | =1.1.4 | |
iPhone OS | =3.1.2 | |
iPhone OS | =1.0.1 | |
iPhone OS | =2.2.1 | |
iPhone OS | =2.1 | |
iPhone OS | =3.0 | |
iPhone OS | =1.1.5 | |
iPhone OS | =2.2.1 | |
iPhone OS | =2.0.0 | |
iPhone OS | =1.1.0 | |
iPhone OS | =1.0.2 | |
iPhone OS | =2.2 | |
iPhone OS | =2.1.1 | |
iPhone OS | =1.1.4 | |
iPhone OS | =2.0.0 | |
iPhone OS | =1.0.0 | |
iPhone OS | =1.1.0 | |
iPhone OS | =2.0.2 | |
iPhone OS | =2.0 | |
iPhone OS | =1.1.5 | |
iPhone OS | =2.0.1 | |
iPhone OS | =2.2.1 | |
iPhone OS | =2.1 | |
iPhone OS | =1.1.3 | |
=1.0 | ||
=1.0.0 | ||
=1.0.1 | ||
=1.0.1 | ||
=1.0.2 | ||
=1.0.2 | ||
=1.1 | ||
=1.1.0 | ||
=1.1.0 | ||
=1.1.0 | ||
=1.1.1 | ||
=1.1.1 | ||
=1.1.2 | ||
=1.1.2 | ||
=1.1.2 | ||
=1.1.3 | ||
=1.1.3 | ||
=1.1.3 | ||
=1.1.4 | ||
=1.1.4 | ||
=1.1.4 | ||
=1.1.5 | ||
=1.1.5 | ||
=1.1.5 | ||
=2.0 | ||
=2.0.0 | ||
=2.0.0 | ||
=2.0.0 | ||
=2.0.1 | ||
=2.0.1 | ||
=2.0.1 | ||
=2.0.2 | ||
=2.0.2 | ||
=2.0.2 | ||
=2.1 | ||
=2.1 | ||
=2.1 | ||
=2.1.1 | ||
=2.2 | ||
=2.2 | ||
=2.2 | ||
=2.2.1 | ||
=2.2.1 | ||
=2.2.1 | ||
=3.0 | ||
=3.0 | ||
=3.0.1 | ||
=3.0.1 | ||
=3.1.2 | ||
=3.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0038 is classified as a high severity vulnerability due to the potential for unauthorized access and data manipulation.
To mitigate CVE-2010-0038, users are advised to upgrade to the latest version of Apple iPhone OS that addresses this vulnerability.
CVE-2010-0038 affects multiple versions of Apple iPhone OS, including versions 1.0 through 3.1.2 on iPhone and iPod touch devices.
This vulnerability allows physically proximate attackers to bypass device locking mechanisms, compromising the confidentiality and integrity of data.
Currently, the best workaround for CVE-2010-0038 is to keep the device updated with the latest Apple iPhone OS which includes security patches.