CVE-2014-1286: Medium severity apple iPhone OS vulnerability
Published Mar 14, 2014
·Updated
SpringBoard Lock Screen in Apple iOS before 7.1 allows remote attackers to cause a denial of service (lock-screen hang) by leveraging a state-management error.
Affected Software
7 affected components
apple iPhone OS<=7.0.6
apple iPhone OS=7.0
apple iPhone OS=7.0.1
apple iPhone OS=7.0.2
apple iPhone OS=7.0.3
apple iPhone OS=7.0.4
apple iPhone OS=7.0.5
Event History
Mar 14, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·10:55 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-1286?
CVE-2014-1286 is classified as a denial of service vulnerability.
2
How do I fix CVE-2014-1286?
To fix CVE-2014-1286, upgrade your Apple iOS to version 7.1 or later.
3
What software is affected by CVE-2014-1286?
CVE-2014-1286 affects Apple iOS versions prior to 7.1, including 7.0.6 and earlier.
4
What type of attack is associated with CVE-2014-1286?
CVE-2014-1286 allows remote attackers to cause a lock-screen hang, leading to denial of service.
5
Is there a workaround for CVE-2014-1286?
There is no official workaround for CVE-2014-1286 other than updating the device to a secure version.