Multiple race conditions in the Phone app in Apple iOS before 7.0.3 allow physically proximate attackers to bypass the locked state, and dial the telephone numbers in arbitrary Contacts entries, by visiting the Contacts pane.
References
Link | Resource |
---|---|
http://lists.apple.com/archives/security-announce/2013/Oct/msg00002.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-10-23 20:48
Updated : 2013-10-24 07:40
NVD link : CVE-2013-5164
Mitre link : CVE-2013-5164
JSON object : View
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Products Affected
apple
- iphone_os