CVE-2013-5144: Apple iPhone OS

Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Passcode Lock in Apple iOS before 7.0.3 on iPhone devices allows physically proximate attackers to bypass an intended passcode requirement, and dial arbitrary telephone numbers, by tapping the emergency-call button during a certain notification and camera-pane state to trigger a NULL pointer dereference.

Affected products

  • Apple iPhone OS: up to and including 7.0.2; version 7.0 only; version 7.0.1 only

Published 2013-10-24. Last modified 2026-06-16.