Vulnerability CVE-2011-0228


Published: 2011-08-29   Modified: 2012-02-13

Description:
The Data Security component in Apple iOS before 4.2.10 and 4.3.x before 4.3.5 does not check the basicConstraints parameter during validation of X.509 certificate chains, which allows man-in-the-middle attackers to spoof an SSL server by using a non-CA certificate to sign a certificate for an arbitrary domain.

See advisories in our WLB2 database:
Topic
Author
Date
High
iOS SSL Implementation Does Not Validate Certificate Chain
Trustwave Adviso...
01.09.2011

Type:

CWE-20

(Improper Input Validation)

CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:P)

CVSS Base Score
Impact Subscore
Exploitability Subscore
7.5/10
6.4/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Partial
Partial
Partial
Affected software
Apple -> Iphone os 

 References:
http://lists.apple.com/archives/security-announce/2011//Jul/msg00004.html
http://lists.apple.com/archives/security-announce/2011//Jul/msg00005.html
http://securityreason.com/securityalert/8361
http://securitytracker.com/id?1025837
http://support.apple.com/kb/HT4824
http://support.apple.com/kb/HT4825
http://www.securityfocus.com/archive/1/518982/100/0/threaded
http://www.securityfocus.com/bid/48877
https://www.trustwave.com/spiderlabs/advisories/TWSL2011-007.txt

Copyright 2020, cxsecurity.com

 

Back to Top