Security Advisory

CVE-2013-3951

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-06-05 10:00:00
Last updated 2024-08-06 16:30:49
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a program with a call-path beginning with the stack-guard= substring, as demonstrated by an iOS untethering attack or an attack against a setuid Mac OS X program.