VulnerabilityModified
CVE-2012-0644
Race condition in the Passcode Lock feature in Apple iOS before 5.1 allows physically proximate attackers to bypass intended passcode requirements via a slide-to-dial gesture.
MEDIUM 6.9EPSS 0.28%
Does this matter?
Lower severity and a low EPSS score (0.28%). Track it; it rarely justifies an emergency change on its own.
Description
Race condition in the Passcode Lock feature in Apple iOS before 5.1 allows physically proximate attackers to bypass intended passcode requirements via a slide-to-dial gesture.
- CVSS 2.0
- 6.9 MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
- EPSS
- 0.28% probability · 20th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-362
- Affected
- apple/iphone os
- Source
- product-security@apple.com
References
- http://lists.apple.com/archives/security-announce/2012/Mar/msg00001.htmlMailing List, Vendor Advisory
- http://secunia.com/advisories/48288Third Party Advisory
- http://www.securitytracker.com/id?1026774Third Party Advisory, VDB Entry
- http://lists.apple.com/archives/security-announce/2012/Mar/msg00001.htmlMailing List, Vendor Advisory
- http://secunia.com/advisories/48288Third Party Advisory
- http://www.securitytracker.com/id?1026774Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.