CVE-2011-1418
Summary
| CVE | CVE-2011-1418 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2011-03-11 22:55:05 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | The stateless address autoconfiguration (aka SLAAC) functionality in the IPv6 networking implementation in Apple iOS before 4.3 and Apple TV before 4.2 places the MAC address into the IPv6 address, which makes it easier for remote IPv6 servers to track users by logging source IPv6 addresses. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
LowAuthentication
NoneConfidentiality
PartialIntegrity
NoneAvailability
NoneAV:N/AC:L/Au:N/C:P/I:N/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apple | Apple Tv | 4.0 | All | All | All |
| Operating System | Apple | Iphone Os | 1.0.0 | All | All | All |
| Operating System | Apple | Iphone Os | 1.0.1 | All | All | All |
| Operating System | Apple | Iphone Os | 1.0.2 | All | All | All |
| Operating System | Apple | Iphone Os | 1.1.0 | All | All | All |
| Operating System | Apple | Iphone Os | 1.1.1 | All | All | All |
| Operating System | Apple | Iphone Os | 1.1.2 | All | All | All |
| Operating System | Apple | Iphone Os | 1.1.3 | All | All | All |
| Operating System | Apple | Iphone Os | 1.1.4 | All | All | All |
| Operating System | Apple | Iphone Os | 1.1.5 | All | All | All |
| Operating System | Apple | Iphone Os | 2.0 | All | All | All |
| Operating System | Apple | Iphone Os | 2.0.0 | All | All | All |
| Operating System | Apple | Iphone Os | 2.0.1 | All | All | All |
| Operating System | Apple | Iphone Os | 2.0.2 | All | All | All |
| Operating System | Apple | Iphone Os | 2.1 | All | All | All |
| Operating System | Apple | Iphone Os | 2.1.1 | All | All | All |
| Operating System | Apple | Iphone Os | 2.2 | All | All | All |
| Operating System | Apple | Iphone Os | 2.2.1 | All | All | All |
| Operating System | Apple | Iphone Os | 3.0 | All | All | All |
| Operating System | Apple | Iphone Os | 3.0.1 | All | All | All |
| Operating System | Apple | Iphone Os | 3.1 | All | All | All |
| Operating System | Apple | Iphone Os | 3.1.2 | All | All | All |
| Operating System | Apple | Iphone Os | 3.1.3 | All | All | All |
| Operating System | Apple | Iphone Os | 3.2 | All | All | All |
| Operating System | Apple | Iphone Os | 3.2.1 | All | All | All |
| Operating System | Apple | Iphone Os | 3.2.2 | All | All | All |
| Operating System | Apple | Iphone Os | 4.0 | All | All | All |
| Operating System | Apple | Iphone Os | 4.0.1 | All | All | All |
| Operating System | Apple | Iphone Os | 4.0.2 | All | All | All |
| Operating System | Apple | Iphone Os | 4.1 | All | All | All |
| Operating System | Apple | Iphone Os | All | All | All | All |
| Operating System | Apple | Tvos | 1.0.0 | All | All | All |
| Operating System | Apple | Tvos | 1.1.0 | All | All | All |
| Operating System | Apple | Tvos | 2.0.0 | All | All | All |
| Operating System | Apple | Tvos | 2.0.1 | All | All | All |
| Operating System | Apple | Tvos | 2.0.2 | All | All | All |
| Operating System | Apple | Tvos | 2.1.0 | All | All | All |
| Operating System | Apple | Tvos | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| APPLE-SA-2011-03-09-1 iOS 4.3 | af854a3a-2127-422b-91ae-364da2661108 | lists.apple.com | Vendor Advisory |
| About the security content of Apple TV 4.2 | af854a3a-2127-422b-91ae-364da2661108 | support.apple.com | Vendor Advisory |
| APPLE-SA-2011-03-09-3 Apple TV 4.2 | af854a3a-2127-422b-91ae-364da2661108 | lists.apple.com | Vendor Advisory |
| About the security content of iOS 4.3 | af854a3a-2127-422b-91ae-364da2661108 | support.apple.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.