CVE-2015-5904: Medium severity iphone os vulnerability
Published Sep 18, 2015
·Updated
Safari in Apple iOS before 9 allows remote attackers to spoof the relationship between URLs and web content via a crafted web site.
Affected Software
1 affected component
apple iPhone OS<=8.4.1
Event History
Sep 18, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5904?
CVE-2015-5904 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2015-5904?
To fix CVE-2015-5904, update your device to iOS version 9 or later.
3
What are the potential impacts of CVE-2015-5904?
CVE-2015-5904 allows remote attackers to spoof the relationship between URLs and web content, which can mislead users.
4
Which software versions are affected by CVE-2015-5904?
CVE-2015-5904 affects Safari on Apple iOS versions prior to 9, specifically versions up to and including 8.4.1.
5
Who can exploit CVE-2015-5904?
Remote attackers can exploit CVE-2015-5904 by crafting malicious websites that deceive users regarding URL content.