CVE-2014-1361
01.07.2014, 10:17
Secure Transport in Apple iOS before 7.1.2, Apple OS X before 10.9.4, and Apple TV before 6.1.2 does not ensure that a DTLS message is accepted only for a DTLS connection, which allows remote attackers to obtain potentially sensitive information from uninitialized process memory by providing a DTLS message within a TLS connection.Enginsight
Vendor | Product | Version |
---|---|---|
apple | mac_os_x | 10.9 |
apple | mac_os_x | 10.9.1 |
apple | mac_os_x | 10.9.2 |
apple | mac_os_x | 10.9.3 |
apple | iphone_os | 𝑥 ≤ 7.1.1 |
apple | iphone_os | 7.0 |
apple | iphone_os | 7.0.1 |
apple | iphone_os | 7.0.2 |
apple | iphone_os | 7.0.3 |
apple | iphone_os | 7.0.4 |
apple | iphone_os | 7.0.5 |
apple | iphone_os | 7.0.6 |
apple | iphone_os | 7.1 |
apple | tvos | 𝑥 ≤ 6.1.1 |
apple | tvos | 6.0 |
apple | tvos | 6.0.1 |
apple | tvos | 6.0.2 |
apple | tvos | 6.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References