First published: Thu Aug 05 2010(Updated: )
Integer overflow in IOSurface in Apple iOS before 4.0.2 on the iPhone and iPod touch, and before 3.2.2 on the iPad, allows local users to gain privileges via vectors involving IOSurface properties, as demonstrated by JailbreakMe.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
iStyle @cosme iPhone OS | =4.0 | |
iStyle @cosme iPhone OS | =4.0 | |
iStyle @cosme iPhone OS | =4.0.1 | |
iStyle @cosme iPhone OS | =4.0.1 | |
iStyle @cosme iPhone OS | ||
Apple iPad | ||
iStyle @cosme iPhone OS | =4.0 | |
iStyle @cosme iPhone OS | =4.0.1 | |
Apple iPod touch |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2973 is considered a moderate severity vulnerability due to its potential to allow local privilege escalation.
To fix CVE-2010-2973, users should upgrade to Apple iOS 4.0.2 or later on affected devices.
CVE-2010-2973 affects iOS devices including iPhone, iPod touch, and iPad running versions prior to 4.0.2 or 3.2.2 respectively.
CVE-2010-2973 is an integer overflow vulnerability that can be exploited for privilege escalation.
CVE-2010-2973 requires local access to the affected device for exploitation.