27.02.2013 Views

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

(PVS) Signatures - Tenable Network Security

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>PVS</strong> ID: 6588 FAMILY: Internet Services RISK: INFO NESSUS ID:Not Available<br />

Description: The remote client has initiated an SSL Client Hello packet<br />

Solution: N/A<br />

CVE Not available<br />

Apple iOS < 6.0 Multiple Vulnerabilities<br />

Passive Vulnerability Scanner (<strong>PVS</strong>) <strong>Signatures</strong><br />

<strong>PVS</strong> ID: 6589 FAMILY: Web Clients RISK: HIGH NESSUS ID:Not Available<br />

Description: Synopsis :\n\nThe remote host is vulnerable to multiple attack vectors.\n\nThe remote host<br />

is an iPhone, iPod Touch, or iPad running iOS. For your information, the observed version<br />

of iOS is : \n %L \n\nVersions of iOS less than 6.0 are potentially affected by multiple<br />

vulnerabilities. Apple iOS 6.0 contains security fixes for the following products :\n\n -<br />

Numerous memory errors exist related to handling 'TIFF', 'PNG' and 'JPEG' images and<br />

'ImageIO' that can allow arbitrary code execution. (CVE-2011-1167, CVE-2011-3026,<br />

CVE-2011-3048, CVE-2011-3328, CVE-2012-1173, CVE-2012-3726)\n\n - Several issues<br />

exist related to 'CoreGraphics' and 'FreeType' (CVE-2012-1126, CVE-2012-1127,<br />

CVE-2012-1128, CVE-2012-1129, CVE-2012-1130, CVE-2012-1131, CVE-2012-1132,<br />

CVE-2012-1133, CVE-2012-1134, CVE-2012-1135, CVE-2012-1136, CVE-2012-1137,<br />

CVE-2012-1138, CVE-2012-1139, CVE-2012-1140, CVE-2012-1141, CVE-2012-1142,<br />

CVE-2012-1143, CVE-2012-1144)\n\n - Numerous issues exist related to libxml and can<br />

lead to application crashes or arbitrary code execution. (CVE-2011-1944, CVE-2011-2821,<br />

CVE-2011-2834, CVE-2011-3919)\n\n - A stack-based buffer overflow exists related to<br />

'locale ID' and 'International Components for Unicode' (ICU). (CVE-2011-4599)\n\n - An<br />

unitialized memory access issue exists related to 'Sorenson' encoded movie files and<br />

'CoreMedia'. (CVE-2012-3722)\n\n - An URL handling issue exists related to 'CF<strong>Network</strong>'<br />

that can disclose sensitive information. (CVE-2012-3724)\n\n - The 'DNAv4' protocol<br />

discloses sensitive information when connecting to unencrypted Wi-Fi networks.<br />

(CVE-2012-3725)\n\n - A buffer overflow error exists related to 'IPSec' and 'racoon'<br />

configuration files. (CVE-2012-3727)\n\n - An invalid pointer dereference error exists<br />

related to the kernel and packet filter ioctls. (CVE-2012-3728)\n\n - An uninitialized<br />

memory access error exists related to the kernel and the Berkeley Packet Filter interpreter.<br />

(CVE-2012-3729)\n\n - Several issues exist related to 'Mail' and the handling of<br />

attachments and 'S/MIME' signed messages. (CVE-2012-3730, CVE-2012-3731,<br />

CVE-2012-3732)\n\n - Information disclosure issues exist related to 'Messages', 'Office<br />

Viewer', system logs, and 'UIKit'. (CVE-2012-3733, CVE-2012-3734, CVE-2012-3743,<br />

CVE-2012-3746)\n\n - Memory corruption errors exist related to 'OpenGL'.<br />

(CVE-2011-3457)\n\n - Numerous errors exist related to 'Passcode Lock'.<br />

(CVE-2012-3735, CVE-2012-3736, CVE-2012-3737, CVE-2012-3738, CVE-2012-3739,<br />

CVE-2012-3740)\n\n - An error exists in 'Restrictions' that can allow unauthorized<br />

purchases. (CVE-2012-3741)\n\n - Errors exist in 'Safari' that are related to misleading<br />

URL characters and password auto complete. (CVE-2012-3742, CVE-2012-0680)\n\n - A<br />

buffer overflow error exists related to 'Telephony' and SMS handling.<br />

(CVE-2012-3745)\n\n - Many errors exist related to the bundled 'WebKit' components.<br />

(CVE-2011-2845, CVE-2011-3016, CVE-2011-3021, CVE-2011-3027, CVE-2011-3032,<br />

CVE-2011-3034, CVE-2011-3035, CVE-2011-3036, CVE-2011-3037, CVE-2011-3038,<br />

CVE-2011-3039, CVE-2011-3040, CVE-2011-3041, CVE-2011-3042, CVE-2011-3043,<br />

Family Internet Services 1803

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!