First published: Sun Aug 16 2015(Updated: )
IOKit in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption and application crash) via a malformed plist.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iStyle @cosme iPhone OS | <=8.4 | |
Apple iOS and macOS | <=10.10.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-3776 is considered to be of high severity due to its capability to execute arbitrary code or cause a denial of service.
To fix CVE-2015-3776, upgrade to iOS versions 8.4.1 or later, or update macOS to version 10.10.5 or later.
The potential impacts of CVE-2015-3776 include arbitrary code execution in a privileged context and application crashes due to memory corruption.
CVE-2015-3776 affects iOS versions prior to 8.4.1 and macOS versions prior to 10.10.5.
Users of Apple iOS devices running versions before 8.4.1 and macOS systems running versions before 10.10.5 are vulnerable to CVE-2015-3776.