Skip to content

CVE-2014-1361

Secure Transport in Apple iOS before 7.1.2, Apple OS X before 10.9.4, and Apple TV before 6.1.2 does not ensure that a DTLS message is accepted only for a DTLS connection, which allows remote attackers to obtain potentially sensitive information from uninitialized process memory by providing a DTLS message within a TLS connection.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0078 (0.8%)
Percentil: 73.8%
EPSS: 2026-05-06

Afecta

apple:mac_os_xapple:iphone_osapple:tvos

Descripción técnica

Secure Transport in Apple iOS before 7.1.2, Apple OS X before 10.9.4, and Apple TV before 6.1.2 does not ensure that a DTLS message is accepted only for a DTLS connection, which allows remote attackers to obtain potentially sensitive information from uninitialized process memory by providing a DTLS message within a TLS connection.

Publicada: 1/7/2014, 10:17:26
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo