First published: Fri Nov 11 2011(Updated: )
The Passcode Lock feature in Apple iOS before 5.0.1 on the iPad 2 does not properly implement the locked state, which allows physically proximate attackers to access data by opening a Smart Cover during power-off confirmation.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPhone OS | <=5.0 | |
iPhone OS | =1.0 | |
iPhone OS | =1.0.0 | |
iPhone OS | =1.0.1 | |
iPhone OS | =1.0.2 | |
iPhone OS | =1.1 | |
iPhone OS | =1.1.0 | |
iPhone OS | =1.1.1 | |
iPhone OS | =1.1.2 | |
iPhone OS | =1.1.3 | |
iPhone OS | =1.1.4 | |
iPhone OS | =1.1.5 | |
iPhone OS | =2.0 | |
iPhone OS | =2.0.1 | |
iPhone OS | =2.0.2 | |
iPhone OS | =2.1 | |
iPhone OS | =2.1.1 | |
iPhone OS | =2.2 | |
iPhone OS | =2.2.1 | |
iPhone OS | =3.0 | |
iPhone OS | =3.0.1 | |
iPhone OS | =3.1 | |
iPhone OS | =3.1.2 | |
iPhone OS | =3.1.3 | |
iPhone OS | =3.2 | |
iPhone OS | =3.2.1 | |
iPhone OS | =3.2.2 | |
iPhone OS | =4.0 | |
iPhone OS | =4.0.1 | |
iPhone OS | =4.0.2 | |
iPhone OS | =4.1 | |
iPhone OS | =4.2 | |
iPhone OS | =4.2.1 | |
iPhone OS | =4.2.5 | |
iPhone OS | =4.2.8 | |
iPhone OS | =4.2.9 | |
iPhone OS | =4.3.0 | |
iPhone OS | =4.3.1 | |
iPhone OS | =4.3.2 | |
iPhone OS | =4.3.3 | |
iPhone OS | =4.3.4 | |
iPhone OS | =4.3.5 | |
Apple iPad 2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-3440 is classified as a moderate severity vulnerability due to its potential to allow unauthorized access to data.
To fix CVE-2011-3440, upgrade your device to Apple iOS version 5.0.1 or later, which addresses the issue.
CVE-2011-3440 exploits a flaw in the Passcode Lock feature that does not properly implement the locked state.
CVE-2011-3440 affects Apple iOS devices, particularly the iPad 2 running versions before 5.0.1.
If CVE-2011-3440 is not addressed, it could allow physical attackers to access sensitive information when the device is locked.