CVE-2015-5912: Medium severity apple ios and macos vulnerability
Published Sep 18, 2015
·Updated
The CFNetwork FTPProtocol component in Apple iOS before 9 allows remote FTP proxy servers to trigger TCP connection attempts to intranet hosts via crafted responses.
Affected Software
2 affected components
Apple iOS and macOS<=10.10.5
Apple iPhone OS<=8.4.1
Event History
Sep 18, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-5912?
CVE-2015-5912 has been classified as a medium severity vulnerability.
2
How does CVE-2015-5912 affect Apple devices?
CVE-2015-5912 allows remote FTP proxy servers to cause TCP connection attempts to intranet hosts, potentially leading to unauthorized access.
3
Which versions of software are affected by CVE-2015-5912?
CVE-2015-5912 affects Apple iOS before version 9 and macOS Yosemite up to version 10.10.5.
4
How can I mitigate CVE-2015-5912?
To mitigate CVE-2015-5912, update your device to the latest version of iOS or macOS that addresses this vulnerability.
5
Is there a patch available for CVE-2015-5912?
Yes, Apple has released updates that address the vulnerabilities associated with CVE-2015-5912.