Apple iOS < 6.1.3 Multiple Vulnerabilities

High Nessus Plugin ID 65633


Report iOS devices older than 6.1.3.


The mobile device is running a version of iOS that is older than version 6.1.3. This version contains security-related fixes for the following issues :

- A state management error exists related to 'Mach-O' files and overlapping segments that could allow execution of unsigned code. (CVE-2013-0977)

- An error exists related to the ARM prefetch abort handler that could allow disclosure of sensitive information. (CVE-2013-0978)

- An error exists related to 'lockdownd' and file permissions restrictions. (CVE-2013-0979)

- An error exists related to screen locking that could allow unauthorized access. (CVE-2013-0980)

- An error exists related to IOUSBDeviceFamily driver used pipe object pointers that could allow execution of arbitrary code. (CVE-2013-0981)

- A variable casting error exists related to the bundled 'WebKit' component and SVG handling. (CVE-2013-0912)


Apple has released a set of patches for iOS-based devices.

See Also

Plugin Details

Severity: High

ID: 65633

File Name: apple_ios_613_check.nbin

Version: $Revision: 1.38 $

Type: local

Published: 2013/03/20

Modified: 2018/01/29

Dependencies: 60033

Risk Information

Risk Factor: High


Base Score: 9.3

Temporal Score: 6.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Required KB Items: mdm/dependency/unlocked

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2013/03/19

Vulnerability Publication Date: 2013/02/15

Reference Information

CVE: CVE-2013-0912, CVE-2013-0977, CVE-2013-0978, CVE-2013-0979, CVE-2013-0980, CVE-2013-0981

BID: 57967, 57990, 58586, 58588, 58589, 58590

OSVDB: 90246, 91220, 91525, 91526, 91527, 91529