First published: Fri Sep 18 2015(Updated: )
IOKit in the kernel in Apple iOS before 9 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2015-5844 and CVE-2015-5846.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS, iPadOS, and watchOS | =1.0 | |
iStyle @cosme iPhone OS | <=8.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-5845 is classified as a high severity vulnerability as it allows attackers to execute arbitrary code or cause denial of service.
To mitigate CVE-2015-5845, update your Apple iOS device to version 9 or later, which contains the security fixes.
CVE-2015-5845 affects Apple iOS versions up to 8.4.1 and all versions of watchOS 1.0.
CVE-2015-5845 could be exploited to execute arbitrary code or cause a denial of service through a crafted application.
While specific exploits for CVE-2015-5845 are not publicly documented, its nature suggests it can be exploited by malicious applications.