First published: Fri Mar 14 2014(Updated: )
CoreCapture in Apple iOS before 7.1 and Apple TV before 6.1 does not properly validate IOKit API calls, which allows attackers to cause a denial of service (assertion failure and device crash) via a crafted app.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iStyle @cosme iPhone OS | <=7.0.6 | |
iStyle @cosme iPhone OS | =7.0 | |
iStyle @cosme iPhone OS | =7.0.1 | |
iStyle @cosme iPhone OS | =7.0.2 | |
iStyle @cosme iPhone OS | =7.0.3 | |
iStyle @cosme iPhone OS | =7.0.4 | |
iStyle @cosme iPhone OS | =7.0.5 | |
tvOS | <=6.0.2 | |
tvOS | =6.0 | |
tvOS | =6.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1271 has a severity rating that indicates it can lead to a denial of service on affected devices.
To fix CVE-2014-1271, update your device to iOS version 7.1 or later, or to tvOS version 6.1 or later.
CVE-2014-1271 affects Apple iOS versions before 7.1 and Apple TV versions before 6.1.
CVE-2014-1271 is a denial of service vulnerability caused by improper validation of IOKit API calls.
CVE-2014-1271 can potentially be exploited by attackers through crafted applications.