CVE-2015-1077: Medium severity iphone os vulnerability
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1077?
CVE-2015-1077 has been classified with a high severity due to the potential for remote code execution and application crashes.
How do I fix CVE-2015-1077?
To mitigate CVE-2015-1077, users should update Safari to version 6.2.4 or later, or to versions 7.1.4 or 8.0.4 and above.
Which versions of Safari are affected by CVE-2015-1077?
CVE-2015-1077 affects Safari versions prior to 6.2.4, as well as 7.x before 7.1.4 and 8.x before 8.0.4.
Can CVE-2015-1077 lead to data breaches?
Yes, CVE-2015-1077 could potentially lead to data breaches since it allows remote attackers to execute arbitrary code.
Is iPhone OS affected by CVE-2015-1077?
Yes, CVE-2015-1077 affects iPhone OS versions up to 8.2, making devices vulnerable to this security issue.