Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2015-1100Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Iphone OS

Severity
5.4MEDIUMNVD
EPSS
0.8%
top 26.49%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedApr 10
Latest updateMay 14

Description

The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to cause a denial of service (out-of-bounds memory access) or obtain sensitive memory-content information via a crafted app.

CVSS vector

AV:L/AC:M/C:P/I:N/A:CExploitability: 3.4 | Impact: 7.8

Affected Packages7 packages

NVDapple/tvos7.1
NVDapple/mac_os_x10.10.2
Appleapple/ios8.3
Appleapple/apple_tv7.2

🔴Vulnerability Details

1
GHSA
GHSA-9j9f-hvfj-j9j6: The kernel in Apple iOS before 82022-05-14

💥Exploits & PoCs

1
Exploit-DB
Apple Mac OSX - Local Denial of Service2015-04-21

📋Vendor Advisories

4
Apple
CVE-2015-1100: iOS 8.3
Apple
CVE-2015-1100: Apple TV 7.2
Apple
CVE-2015-1100: Watch OS 1.0.1
Apple
CVE-2015-1100: OS X Yosemite v10.10.3 and Security Update 2015-004