CVE-2015-5829Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Iphone OS

Severity
6.8MEDIUMNVD
EPSS
2.8%
top 13.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 18
Latest updateJul 12

Description

Data Detectors Engine in Apple iOS before 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted text file.

CVSS vector

AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4

Affected Packages4 packages

NVDapple/iphone_os8.4.1
Appleapple/ios_9
NVDapple/watchos1.0

🔴Vulnerability Details

1
GHSA
GHSA-m5pc-vc53-9f23: Data Detectors Engine in Apple iOS before 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a c2022-05-17

📋Vendor Advisories

3
Red Hat
kernel: platform/x86: x86-android-tablets: Unregister devices in reverse order2024-07-12
Apple
CVE-2015-5829: iOS 9
Apple
CVE-2015-5829: watchOS 2