APPLE-SA-2010-11-22-1Vendor advisory
http://lists.apple.com/archives/security-announce/2010//Nov/msg00003.html CVE-2010-3830
Apple iOS 4.0.2 - Networking Packet Filter Rules Privilege Escalation
Record summary
CVE-2010-3830 has a selected CVSS score of 7.2; EIP currently links 1 catalogued exploit.
Description
Networking in Apple iOS before 4.2 accesses an invalid pointer during the processing of packet filter rules, which allows local users to gain privileges via unspecified vectors.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBApple iOS 4.0.2 - Networking Packet Filter Rules Privilege EscalationExploitDB exploitby AppleNot analyzed1 file
References
742314Third-party advisory
http://secunia.com/advisories/42314 support.apple.comConfirmation
http://support.apple.com/kb/HT4456 1024772vdb entry
http://www.securitytracker.com/id?1024772 ADV-2010-3046vdb entry
http://www.vupen.com/english/advisories/2010/3046 appleios-networking-privilege-escalation(63419)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/63419 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-3830