Vulnerability Description
The Accessibility component in Apple iOS before 4.1 on the iPhone and iPod touch does not perform the expected VoiceOver announcement associated with the location services icon, which has unspecified impact and attack vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apple | Iphone Os | < 4.1 |
| Apple | Ipod Touch | - |
References
- http://lists.apple.com/archives/security-announce/2010//Sep/msg00002.htmlMailing ListVendor Advisory
- http://support.apple.com/kb/HT4334Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61694Third Party AdvisoryVDB Entry
- http://lists.apple.com/archives/security-announce/2010//Sep/msg00002.htmlMailing ListVendor Advisory
- http://support.apple.com/kb/HT4334Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/61694Third Party AdvisoryVDB Entry
FAQ
What is CVE-2010-1809?
CVE-2010-1809 is a vulnerability with a CVSS score of 10.0 (HIGH). The Accessibility component in Apple iOS before 4.1 on the iPhone and iPod touch does not perform the expected VoiceOver announcement associated with the location services icon, which has unspecified ...
How severe is CVE-2010-1809?
CVE-2010-1809 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-1809?
Check the references section above for vendor advisories and patch information. Affected products include: Apple Iphone Os, Apple Ipod Touch.