CVE-2014-4368: Medium severity apple iPhone OS vulnerability
Published Sep 18, 2014
·Updated
The Accessibility subsystem in Apple iOS before 8 allows attackers to interfere with screen locking via vectors related to AssistiveTouch events.
Affected Software
10 affected components
apple iPhone OS<=7.1.2
apple iPhone OS=7.0
apple iPhone OS=7.0.1
apple iPhone OS=7.0.2
apple iPhone OS=7.0.3
apple iPhone OS=7.0.4
apple iPhone OS=7.0.5
apple iPhone OS=7.0.6
apple iPhone OS=7.1
apple iPhone OS=7.1.1
Event History
Sep 18, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4368?
CVE-2014-4368 has a moderate severity rating, as it can allow attackers to interfere with the screen locking feature.
2
How do I fix CVE-2014-4368?
To mitigate CVE-2014-4368, users should update their Apple iOS devices to version 8 or later.
3
Which versions of iOS are affected by CVE-2014-4368?
CVE-2014-4368 affects all versions of Apple iOS before 8, specifically 7.0 through 7.1.1.
4
What impact does CVE-2014-4368 have on iOS devices?
CVE-2014-4368 allows attackers to bypass the screen lock, potentially exposing sensitive information.
5
Is it safe to use my device if it is on an affected version related to CVE-2014-4368?
Using an affected version without updating increases the risk of unauthorized access due to the vulnerability.