CVE-2011-3245: Low severity iphone os vulnerability
The Keyboards component in Apple iOS before 5 displays the final character of an entered password during a subsequent use of a keyboard, which allows physically proximate attackers to obtain sensitive information by reading this character.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3245?
CVE-2011-3245 is considered a medium severity vulnerability due to the potential for sensitive information disclosure.
How do I fix CVE-2011-3245?
To resolve CVE-2011-3245, users should update their Apple iOS devices to version 5 or later, where the issue is addressed.
Which versions of iOS are affected by CVE-2011-3245?
CVE-2011-3245 affects Apple iOS versions prior to 5, including versions 3.1 to 4.3.5.
What type of information can be exposed by CVE-2011-3245?
CVE-2011-3245 can expose the final character of an entered password during subsequent keyboard use.
Who is at risk with CVE-2011-3245?
Physically proximate attackers can easily exploit CVE-2011-3245 to retrieve sensitive information from devices that are running vulnerable versions of iOS.