CVE-2015-5905: Medium severity iphone os vulnerability
Published Sep 18, 2015
·Updated
Safari in Apple iOS before 9 allows remote attackers to spoof the relationship between URLs and web content via a crafted window opener on a web site.
Affected Software
1 affected component
apple iPhone OS<=8.4.1
Event History
Sep 18, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5905?
CVE-2015-5905 is classified as a high-severity vulnerability because it allows remote attackers to spoof URL relationships.
2
How do I fix CVE-2015-5905?
To fix CVE-2015-5905, update your Apple iOS device to version 9 or later.
3
What are the potential impacts of CVE-2015-5905?
The potential impacts of CVE-2015-5905 include phishing attacks and user deception through manipulated content.
4
Which versions of iOS are affected by CVE-2015-5905?
CVE-2015-5905 affects all Apple iOS versions prior to 9, specifically up to 8.4.1.
5
Is there a workaround for CVE-2015-5905?
There are no known workarounds for CVE-2015-5905 other than upgrading to a fixed version of iOS.