CVE-2015-3722Apple Iphone OS vulnerability

CWE-2543 documents3 sources
Severity
4.3MEDIUMNVD
EPSS
0.6%
top 30.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 3
Latest updateMay 17

Description

Application Store in Apple iOS before 8.4 does not ensure the uniqueness of bundle IDs, which allows attackers to cause a denial of service (ID collision and launch outage) via a crafted universal provisioning profile app.

CVSS vector

AV:N/AC:M/C:N/I:N/A:PExploitability: 8.6 | Impact: 2.9

Affected Packages2 packages

Appleapple/ios8.4

🔴Vulnerability Details

1
GHSA
GHSA-88j7-h683-wr6x: Application Store in Apple iOS before 82022-05-17

📋Vendor Advisories

1
Apple
CVE-2015-3722: iOS 8.4
CVE-2015-3722 — Apple Iphone OS vulnerability | cvebase