CVE-2008-4593
published 2008-10-17CVE-2008-4593: Apple iPhone 2.1 with firmware 5F136, when Require Passcode is enabled and Show SMS Preview is disabled, allows physically proximate attackers to obtain…
PriorityP46low1.2CVSS 2.0
AVLACHAuNCPINAN
EPSS
0.32%
24.3th percentile
Apple iPhone 2.1 with firmware 5F136, when Require Passcode is enabled and Show SMS Preview is disabled, allows physically proximate attackers to obtain sensitive information by performing an Emergency Call tap and then reading SMS messages on the device screen, aka Apple bug number 6267416.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | iphone | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
| apple | iphone_os | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-mx3j-x2jw-9h3c: The Passcode Lock feature in Apple iPhone OS 1
ghsa_unreviewed·2022-05-02·CVSS 1.2
CVE-2008-4230 [LOW] CWE-200 GHSA-mx3j-x2jw-9h3c: The Passcode Lock feature in Apple iPhone OS 1
The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 displays SMS messages when the emergency-call screen is visible, which allows physically proximate attackers to obtain sensitive information by reading these messages. NOTE: this might be a duplicate of CVE-2008-4593.
GHSA
GHSA-6gw4-928q-mg88: Apple iPhone 2
ghsa_unreviewed·2022-05-02
CVE-2008-4593 [LOW] CWE-200 GHSA-6gw4-928q-mg88: Apple iPhone 2
Apple iPhone 2.1 with firmware 5F136, when Require Passcode is enabled and Show SMS Preview is disabled, allows physically proximate attackers to obtain sensitive information by performing an Emergency Call tap and then reading SMS messages on the device screen, aka Apple bug number 6267416.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://securitytracker.com/id?1021021http://www.karlkraft.com/index.php/2008/10/03/yet-another-iphone-emergency-call-security-bug/https://exchange.xforce.ibmcloud.com/vulnerabilities/46062http://securitytracker.com/id?1021021http://www.karlkraft.com/index.php/2008/10/03/yet-another-iphone-emergency-call-security-bug/https://exchange.xforce.ibmcloud.com/vulnerabilities/46062
2008-10-17
Published