First published: Tue May 08 2012(Updated: )
WebKit in Apple iOS before 5.1.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPhone OS | <=5.1 | |
iPhone OS | <=5.1 | |
iPhone OS | <=5.1 | |
iPhone OS | =3.0 | |
iPhone OS | =3.1 | |
iPhone OS | =3.1 | |
iPhone OS | =3.1 | |
iPhone OS | =3.1.2 | |
iPhone OS | =3.1.3 | |
iPhone OS | =3.2 | |
iPhone OS | =3.2 | |
iPhone OS | =3.2.1 | |
iPhone OS | =3.2.1 | |
iPhone OS | =3.2.2 | |
iPhone OS | =4.0 | |
iPhone OS | =4.0 | |
iPhone OS | =4.0 | |
iPhone OS | =4.0.1 | |
iPhone OS | =4.0.1 | |
iPhone OS | =4.0.1 | |
iPhone OS | =4.0.2 | |
iPhone OS | =4.1 | |
iPhone OS | =4.2.1 | |
iPhone OS | =4.2.5 | |
iPhone OS | =4.2.8 | |
iPhone OS | =4.3.0 | |
iPhone OS | =4.3.1 | |
iPhone OS | =4.3.2 | |
iPhone OS | =4.3.3 | |
iPhone OS | =4.3.5 | |
iPhone OS | =4.3.5 | |
iPhone OS | =4.3.5 | |
iPhone OS | =5.0 | |
iPhone OS | =5.0 | |
iPhone OS | =5.0 | |
iPhone OS | =5.0 | |
iPhone OS | =5.0.1 | |
iPhone OS | =5.0.1 | |
iPhone OS | =5.0.1 | |
iPhone OS | =5.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0672 is classified as a critical vulnerability due to its ability to allow remote attackers to execute arbitrary code.
To mitigate CVE-2012-0672, users should update their iOS devices to version 5.1.1 or later.
CVE-2012-0672 affects various Apple iOS devices, including iPhones, iPads, and iPod Touch running versions prior to 5.1.1.
The risks associated with CVE-2012-0672 include potential remote code execution and denial of service, leading to memory corruption and application crashes.
While you can continue using an affected device, it is strongly advised to update to a secure version to protect against exploitation.