First published: Fri Apr 10 2015(Updated: )
IOMobileFramebuffer in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensitive information about kernel memory via a crafted app.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <=8.2 | |
tvOS | <=7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1097 has a severity rating that indicates it poses a risk of sensitive information disclosure.
To mitigate CVE-2015-1097, update your iOS device to version 8.3 or later and your TVOS device to version 7.2 or later.
CVE-2015-1097 affects Apple iOS versions prior to 8.3 and Apple TVOS versions prior to 7.2.
CVE-2015-1097 is classified as a memory disclosure vulnerability.
Exploitation of CVE-2015-1097 requires the user to install a malicious app, limiting its remote exploitation potential.