Note:
This project will be discontinued after December 13, 2021. [more]
2016-06-13
The socket_create function in common/socket.c in libimobiledevice and libusbmuxd allows remote attackers to bypass intended access restrictions and communicate with services on iOS devices by connecting to an IPv4 TCP socket.
Products | Ubuntu_linux, Libimobiledevice, Libusbmuxd, Leap, Opensuse |
Type | Improper Access Control (CWE-284) |
First patch |
https://github.com/libimobiledevice/libimobiledevice/commit/df1f5c4d70d0c19ad40072f5246ca457e7f9849e |
Relevant file/s | ./common/socket.c (modified, +2, -2) |
Links |
• http://www.openwall.com/lists/oss-security/2016/05/26/6
• https://github.com/libimobiledevice/libusbmuxd/commit/4397b3376dc4e4cb1c991d0aed61ce6482614196 • http://lists.opensuse.org/opensuse-updates/2016-06/msg00029.html • http://lists.opensuse.org/opensuse-security-announce/2016-06/msg00042.html • http://www.ubuntu.com/usn/USN-3026-2 |
Navigation
Patch data:
Patched area:
(on by default)
Patched area: