First published: Fri Sep 18 2015(Updated: )
Apple iOS before 9 allows attackers to obtain sensitive information about inter-app communication via a crafted app that conducts an interception attack involving an unspecified URL scheme.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
iPhone OS | <=8.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5835 has been classified as a moderate severity vulnerability.
To mitigate CVE-2015-5835, update your iOS device to version 9 or later.
CVE-2015-5835 exploits weaknesses in inter-app communication to allow unauthorized access to sensitive information.
CVE-2015-5835 affects all iOS versions prior to 9.0.
CVE-2015-5835 is associated with interception attacks using crafted apps.