CVE-2015-3710
published 2015-07-03CVE-2015-3710: Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to trigger a refresh operation, and consequently cause a visit to an arbitrary web…
PriorityP423medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.91%
77.7th percentile
Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to trigger a refresh operation, and consequently cause a visit to an arbitrary web site, via a crafted HTML e-mail message.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | iphone_os | <= 8.3 | — |
| apple | mac_os_x | <= 10.10.3 | — |
| apple | os_x_yosemite_v10.10.4_and_security_update_2015-005 | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q7c6-7qqr-v5c7: Mail in Apple iOS before 8
ghsa_unreviewed·2022-05-17
CVE-2015-3710 [MEDIUM] GHSA-q7c6-7qqr-v5c7: Mail in Apple iOS before 8
Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to trigger a refresh operation, and consequently cause a visit to an arbitrary web site, via a crafted HTML e-mail message.
Apple
CVE-2015-3710: iOS 8.4
vendor_apple·CVSS 4.3
CVE-2015-3710 [MEDIUM] CVE-2015-3710: iOS 8.4
Apple Security Update: About the security content of iOS 8.4
Product: iOS
Version: 8.4
CVE: CVE-2015-3710
Component: CVE-ID
Apple
CVE-2015-3710: OS X Yosemite v10.10.4 and Security Update 2015-005
vendor_apple·CVSS 4.3
CVE-2015-3710 [MEDIUM] CVE-2015-3710: OS X Yosemite v10.10.4 and Security Update 2015-005
Apple Security Update: About the security content of OS X Yosemite v10.10.4 and Security Update 2015-005
Product: OS X Yosemite v10.10.4 and Security Update 2015-005
CVE: CVE-2015-3710
Component: CVE-ID
Impact: A malicious application may be able to determine kernel memory layout
Description: An issue existed in NTFS that could have led to the disclosure of kernel memory content. This issue was addressed through improved memory handling.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlhttp://support.apple.com/kb/HT204941http://support.apple.com/kb/HT204942http://www.securityfocus.com/bid/75491http://www.securitytracker.com/id/1032760http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.htmlhttp://lists.apple.com/archives/security-announce/2015/Jun/msg00002.htmlhttp://support.apple.com/kb/HT204941http://support.apple.com/kb/HT204942http://www.securityfocus.com/bid/75491http://www.securitytracker.com/id/1032760
2015-07-03
Published