CVE-2011-3442

EUVD-2011-3405
The kernel in Apple iOS before 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute arbitrary unsigned code via a crafted app.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.2 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 14%
Affected Products (NVD)
VendorProductVersion
appleiphone_os
4.3.0
appleiphone_os
4.3.1
appleiphone_os
4.3.2
appleiphone_os
4.3.3
appleiphone_os
4.3.4
appleiphone_os
4.3.5
appleiphone_os
4.3.5
appleiphone_os
4.3.5
appleiphone_os
5.0
appleiphone_os
5.0
appleiphone_os
5.0
appleiphone_os
5.0
𝑥
= Vulnerable software versions
Common Weakness Enumeration