CVE-2012-3748: Race Condition
Race condition in WebKit in Apple iOS before 6.0.1 and Safari before 6.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving JavaScript arrays.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3748?
CVE-2012-3748 has a high severity rating due to its potential to allow remote code execution and application crashes.
How do I fix CVE-2012-3748?
To fix CVE-2012-3748, users should update to Apple iOS versions 6.0.1 or later and Safari versions 6.0.2 or later.
What systems are affected by CVE-2012-3748?
CVE-2012-3748 affects various versions of Apple Safari and iPhone OS prior to their secure updates.
What kind of attacks exploit CVE-2012-3748?
CVE-2012-3748 can be exploited through specially crafted JavaScript that manipulates arrays, leading to arbitrary code execution.
Is there a workaround for CVE-2012-3748?
While the best solution is to update the software, temporary mitigation strategies include disabling JavaScript in Safari.