First published: Wed Dec 08 2010(Updated: )
Race condition in Apple iOS 4.0 through 4.1 for iPhone 3G and later allows physically proximate attackers to bypass the passcode lock by making a call from the Emergency Call screen, then quickly pressing the Sleep/Wake button.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPhone OS | =4.1 | |
iPhone OS | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-4012 has a medium severity rating due to its potential to allow unauthorized access to a device.
To fix CVE-2010-4012, update your iOS device to version 4.2 or later, which contains the necessary patch.
CVE-2010-4012 affects iPhone 3G and later models running iOS versions 4.0 and 4.1.
No, CVE-2010-4012 requires physical access to the device to be exploited.
CVE-2010-4012 allows an attacker to bypass the passcode lock on affected devices under specific conditions.