CVE-2010-4012: Race Condition
Published Dec 8, 2010
·Updated
Race condition in Apple iOS 4.0 through 4.1 for iPhone 3G and later allows physically proximate attackers to bypass the passcode lock by making a call from the Emergency Call screen, then quickly pressing the Sleep/Wake button.
Affected Software
2 affected components
apple iPhone OS=4.1
apple iPhone OS=4.0
Event History
Dec 8, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-4012?
CVE-2010-4012 has a medium severity rating due to its potential to allow unauthorized access to a device.
2
How do I fix CVE-2010-4012?
To fix CVE-2010-4012, update your iOS device to version 4.2 or later, which contains the necessary patch.
3
What devices are affected by CVE-2010-4012?
CVE-2010-4012 affects iPhone 3G and later models running iOS versions 4.0 and 4.1.
4
Can CVE-2010-4012 be exploited remotely?
No, CVE-2010-4012 requires physical access to the device to be exploited.
5
What does CVE-2010-4012 allow an attacker to do?
CVE-2010-4012 allows an attacker to bypass the passcode lock on affected devices under specific conditions.