CVE-2015-5880: Infoleak
Published Sep 18, 2015
·Updated
CoreAnimation in Apple iOS before 9 allows attackers to bypass intended IOSurface restrictions and obtain screen-framebuffer access via a crafted background app.
Affected Software
1 affected component
apple iPhone OS<=8.4.1
Event History
Sep 18, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5880?
CVE-2015-5880 is classified as a high-severity vulnerability due to its potential for unauthorized access to sensitive data.
2
How do I fix CVE-2015-5880?
To fix CVE-2015-5880, users should update their Apple iOS devices to version 9.0 or later.
3
What components are affected by CVE-2015-5880?
CVE-2015-5880 specifically affects CoreAnimation in versions of Apple iOS prior to 9.0.
4
What type of attack does CVE-2015-5880 enable?
CVE-2015-5880 enables attackers to bypass IOSurface restrictions and gain access to the screen-framebuffer.
5
Who is impacted by CVE-2015-5880?
All users of Apple iOS versions before 9.0, particularly those running versions up to 8.4.1, are impacted by CVE-2015-5880.