CVE-2013-3950: Buffer Overflow
Stack-based buffer overflow in the openSharedCacheFile function in dyld.cpp in dyld in Apple iOS 5.1.x and 6.x through 6.1.3 makes it easier for attackers to conduct untethering attacks via a long string in the DYLDSHAREDCACHEDIR environment variable.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-3950?
CVE-2013-3950 is classified as a high severity vulnerability due to its potential to allow attackers to conduct untethering attacks.
How do I fix CVE-2013-3950?
To fix CVE-2013-3950, users should update their devices to the latest iOS version that addresses this vulnerability.
Which Apple devices are affected by CVE-2013-3950?
CVE-2013-3950 affects Apple iOS versions 5.1, 5.1.1, 6.0, 6.0.1, 6.0.2, 6.1, 6.1.2, and 6.1.3.
What causes CVE-2013-3950?
CVE-2013-3950 is caused by a stack-based buffer overflow in the openSharedCacheFile function within dyld.
What type of attack can CVE-2013-3950 enable?
CVE-2013-3950 can enable attackers to perform untethering attacks through manipulation of the DYLD_SHARED_CACHE_DIR environment variable.