Multiple Apple Products IPv6 MAC Address in SLAAC Security Weakness
BID:46944
Info
Multiple Apple Products IPv6 MAC Address in SLAAC Security Weakness
| Bugtraq ID: | 46944 |
| Class: | Design Error |
| CVE: |
CVE-2011-1418 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 09 2011 12:00AM |
| Updated: | Mar 19 2015 08:50AM |
| Credit: | Apple |
| Vulnerable: |
Apple iPod Touch 0 Apple iPhone 0 Apple iPad 0 Apple iOS 4.2.1 Apple iOS 4.0.2 Apple iOS 4.0.1 Apple iOS 3.2.2 Apple iOS 3.2.1 Apple iOS 4.2 beta Apple iOS 4.2 Apple iOS 4.1 Apple iOS 4 Apple iOS 3.2 Apple iOS 2.1 Apple iOS 2.0 Apple Apple TV 4.1 Apple Apple TV 4.0 |
| Not Vulnerable: |
Apple iOS 4.3 Apple Apple TV 4.2 |
Discussion
Multiple Apple Products IPv6 MAC Address in SLAAC Security Weakness
Multiple Apple products are prone to a security weakness.
An attacker-controlled server may exploit this issue to track specific devices or users across connections. This can aid attackers in launching further attacks.
This issue is fixed in the following versions:
Apple TV 4.2
Apple iOS 4.3
Multiple Apple products are prone to a security weakness.
An attacker-controlled server may exploit this issue to track specific devices or users across connections. This can aid attackers in launching further attacks.
This issue is fixed in the following versions:
Apple TV 4.2
Apple iOS 4.3
Solution / Fix
Multiple Apple Products IPv6 MAC Address in SLAAC Security Weakness
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.