CVE-2013-0977

EUVD-2013-0988
dyld in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not properly manage the state of file loading for Mach-O executable files, which allows local users to bypass intended code-signing requirements via a file that contains overlapping segments.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.6 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 18%
Affected Products (NVD)
VendorProductVersion
appleiphone_os
𝑥
≤ 6.1.2
appleiphone_os
1.0.0
appleiphone_os
1.0.1
appleiphone_os
1.0.2
appleiphone_os
1.1.0
appleiphone_os
1.1.0
appleiphone_os
1.1.1
appleiphone_os
1.1.2
appleiphone_os
1.1.2
appleiphone_os
1.1.3
appleiphone_os
1.1.3
appleiphone_os
1.1.4
appleiphone_os
1.1.4
appleiphone_os
1.1.5
appleiphone_os
1.1.5
appleiphone_os
2.0
appleiphone_os
2.0.0
appleiphone_os
2.0.0
appleiphone_os
2.0.1
appleiphone_os
2.0.1
appleiphone_os
2.0.2
appleiphone_os
2.0.2
appleiphone_os
2.1
appleiphone_os
2.1
appleiphone_os
2.1.1
appleiphone_os
2.2
appleiphone_os
2.2
appleiphone_os
2.2.1
appleiphone_os
2.2.1
appleiphone_os
3.0
appleiphone_os
3.0
appleiphone_os
3.0.1
appleiphone_os
3.0.1
appleiphone_os
3.1
appleiphone_os
3.1
appleiphone_os
3.1.2
appleiphone_os
3.1.2
appleiphone_os
3.1.3
appleiphone_os
3.1.3
appleiphone_os
3.2
appleiphone_os
3.2
appleiphone_os
3.2.1
appleiphone_os
3.2.1
appleiphone_os
3.2.2
appleiphone_os
4.0
appleiphone_os
4.0
appleiphone_os
4.0.1
appleiphone_os
4.0.1
appleiphone_os
4.0.2
appleiphone_os
4.1
appleiphone_os
4.2.1
appleiphone_os
4.2.5
appleiphone_os
4.2.8
appleiphone_os
4.3.0
appleiphone_os
4.3.1
appleiphone_os
4.3.2
appleiphone_os
4.3.3
appleiphone_os
4.3.5
appleiphone_os
4.3.5
appleiphone_os
4.3.5
appleiphone_os
5.0
appleiphone_os
5.0
appleiphone_os
5.0
appleiphone_os
5.0.1
appleiphone_os
5.0.1
appleiphone_os
5.0.1
appleiphone_os
5.1
appleiphone_os
5.1.1
appleiphone_os
6.0
appleiphone_os
6.0.1
appleiphone_os
6.0.2
appleiphone_os
6.1
appletvos
𝑥
≤ 5.2.0
appletvos
1.0.0
appletvos
1.1.0
appletvos
2.0.0
appletvos
2.0.1
appletvos
2.0.2
appletvos
2.1.0
appletvos
2.2.0
appletvos
2.3.0
appletvos
2.3.1
appletvos
2.4.0
appletvos
3.0.0
appletvos
3.0.1
appletvos
3.0.2
appletvos
4.1.0
appletvos
4.1.1
appletvos
4.2.0
appletvos
4.2.1
appletvos
4.2.2
appletvos
4.3.0
appletvos
4.4.0
appletvos
4.4.2
appletvos
4.4.3
appletvos
4.4.4
appletvos
5.0.0
appletvos
5.0.1
appletvos
5.0.2
appletvos
5.1.0
appletvos
5.1.1
𝑥
= Vulnerable software versions