Security Advisory

CVE-2012-3733

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2012-09-20 21:00:00
Last updated 2024-08-06 20:13:51
Assigner apple
CVSS score not scored
State PUBLISHED

Description

Messages in Apple iOS before 6, when multiple iMessage e-mail addresses are configured, does not ensure that a reply's sender address matches the recipient address of the original message, which allows remote attackers to obtain potentially sensitive information about alternate e-mail addresses in opportunistic circumstances by reading a reply.