CVE-2015-1097: Infoleak
Published Apr 10, 2015
·Updated
IOMobileFramebuffer in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to obtain sensitive information about kernel memory via a crafted app.
Affected Software
2 affected components
iPhone OS<=8.2
tvOS<=7.1
Event History
Apr 10, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1097?
CVE-2015-1097 has a severity rating that indicates it poses a risk of sensitive information disclosure.
2
How do I fix CVE-2015-1097?
To mitigate CVE-2015-1097, update your iOS device to version 8.3 or later and your TVOS device to version 7.2 or later.
3
What software is affected by CVE-2015-1097?
CVE-2015-1097 affects Apple iOS versions prior to 8.3 and Apple TVOS versions prior to 7.2.
4
What type of vulnerability is CVE-2015-1097?
CVE-2015-1097 is classified as a memory disclosure vulnerability.
5
Can CVE-2015-1097 be exploited remotely?
Exploitation of CVE-2015-1097 requires the user to install a malicious app, limiting its remote exploitation potential.