First published: Fri Jul 03 2015(Updated: )
The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not properly handle HFS parameters, which allows attackers to obtain sensitive memory-layout information via a crafted app.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | <=10.10.3 | |
iStyle @cosme iPhone OS | <=8.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-3721 has a moderate severity rating due to its potential to expose sensitive memory-layout information.
To fix CVE-2015-3721, update your Apple iOS device to version 8.4 or later, or update your OS X to version 10.10.4 or later.
CVE-2015-3721 affects Apple iOS versions prior to 8.4 and OS X versions prior to 10.10.4.
CVE-2015-3721 can be exploited by attackers using a crafted application to reveal sensitive information.
No, CVE-2015-3721 is no longer a concern if you are using Apple iOS version 8.4 or later and OS X version 10.10.4 or later.