The Networking subsystem in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, uses predictable TCP initial sequence numbers, which allows remote attackers to spoof or hijack a TCP connection.
Vector
NETWORK
Complexity
LOW
Authentication
NONE
Confidentiality
PARTIAL
Integrity
PARTIAL
Availability
PARTIAL
Advisory | Patch | Confirmed | Link |
---|---|---|---|
ADV-2008-2558 | |||
ADV-2008-2525 | |||
1020848 | |||
31092 | |||
http://support.apple.com/kb/HT3129 | |||
http://support.apple.com/kb/HT3026 | |||
31900 | |||
31823 | |||
APPLE-SA-2008-09-12 | |||
APPLE-SA-2008-09-09 |