CVE-2015-5863: Infoleak
Published Sep 18, 2015
·Updated
IOStorageFamily in Apple iOS before 9 does not properly initialize an unspecified data structure, which allows local users to obtain sensitive information from kernel memory via unknown vectors.
Affected Software
3 affected components
Apple iPhone OS<=8.4.1
Apple iOS and macOS<=10.10.5
Apple WatchOS=1.0
Event History
Sep 18, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5863?
CVE-2015-5863 is classified as a moderate severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2015-5863?
To remediate CVE-2015-5863, update affected devices to the latest version of iOS, macOS, or watchOS as applicable.
3
What types of devices are affected by CVE-2015-5863?
CVE-2015-5863 affects devices running iOS before version 9, macOS Yosemite before version 10.10.5, and watchOS 1.0.
4
What kind of information can be leaked due to CVE-2015-5863?
CVE-2015-5863 allows local users to potentially access sensitive information from kernel memory.
5
Who is vulnerable to CVE-2015-5863?
Local users on vulnerable versions of iOS, macOS, or watchOS are at risk of exploitation through CVE-2015-5863.