Apple TV < 6.1 Multiple Vulnerabilities

High Nessus Network Monitor Plugin ID 8250

Synopsis

The version of this Apple TV device is not current.

Description

Versions earlier than the Apple TV 6.1 update are vulnerable to multiple issues, the most serious of which could be leveraged to result in arbitrary code execution.

Solution

Upgrade Apple TV to 6.1, or later.

See Also

http://seclists.org/bugtraq/2014/Mar/55

Plugin Details

Severity: High

ID: 8250

Published: 2014/05/29

Modified: 2018/09/16

Dependencies: 6485

Nessus ID: 72962

Risk Information

Risk Factor: High

CVSSv2

Base Score: 7.5

Temporal Score: 6.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

CVSSv3

Base Score: 7.3

Temporal Score: 7

Vector: CVSS3#AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

Temporal Vector: CVSS3#E:X/RL:O/RC:C

Vulnerability Information

CPE: cpe:/a:apple:apple_tv

Patch Publication Date: 2014/03/11

Vulnerability Publication Date: 2014/03/11

Reference Information

CVE: CVE-2014-1279, CVE-2014-1267, CVE-2014-1271, CVE-2014-1272, CVE-2014-1273, CVE-2014-1275, CVE-2012-2088, CVE-2013-6629, CVE-2014-1278, CVE-2014-1282, CVE-2014-1287, CVE-2013-2909, CVE-2013-2926, CVE-2013-2928, CVE-2013-5196, CVE-2013-5197, CVE-2013-5198, CVE-2013-5199, CVE-2013-5225, CVE-2013-5228, CVE-2013-6625, CVE-2013-6635, CVE-2014-1269, CVE-2014-1270, CVE-2014-1289, CVE-2014-1290, CVE-2014-1291, CVE-2014-1292, CVE-2014-1293, CVE-2014-1294, CVE-2014-1280

BID: 54270, 63024, 63028, 63672, 63676, 64354, 64356, 64358, 64359, 64360, 64361, 64362, 65779, 65780, 65781, 66088, 66089, 66090

IAVA: 2013-A-0048