Lucene search

K
nessusThis script is Copyright (C) 2015-2024 and is owned by Tenable, Inc. or an Affiliate thereof.APPLE_IOS_91_CHECK.NBIN
HistoryOct 23, 2015 - 12:00 a.m.

Apple iOS < 9.1 Multiple Vulnerabilities

2015-10-2300:00:00
This script is Copyright (C) 2015-2024 and is owned by Tenable, Inc. or an Affiliate thereof.
www.tenable.com
12

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.084 Low

EPSS

Percentile

94.5%

The mobile device is running a version of iOS prior to version 9.1. It is, therefore, affected by multiple vulnerabilities in the following components :

  • Accelerate Framework (CVE-2015-5940)

  • Bom CVE-2015-7006)

  • CFNetwork (CVE-2015-7023)

  • configd (CVE-2015-7015)

  • CoreGraphics (CVE-2015-5925, CVE-2015-5926)

  • CoreText (CVE-2015-6975, CVE-2015-6992, CVE-2015-7017)

  • Disk Images (CVE-2015-6995)

  • FontParser (CVE-2015-5927, CVE-2015-5942, CVE-2015-6976, CVE-2015-6977, CVE-2015-6978, CVE-2015-6990, CVE-2015-6991, CVE-2015-6993, CVE-2015-7008, CVE-2015-7009, CVE-2015-7010, CVE-2015-7018)

  • GasGauge (CVE-2015-6979)

  • Grand Central Dispatch (CVE-2015-6989)

  • Graphics Driver (CVE-2015-6986)

  • ImageIO (CVE-2015-5935, CVE-2015-5936, CVE-2015-5937, CVE-2015-5939)

  • IOAcceleratorFamily (CVE-2015-6996)

  • IOHIDFamily (CVE-2015-6974)

  • Kernel (CVE-2015-7004, CVE-2015-6988, CVE-2015-6994)

  • Notification Center (CVE-2015-7000)

  • OpenGL (CVE-2015-5924)

  • Security (CVE-2015-6983, CVE-2015-6999, CVE-2015-6997)

  • Telephony (CVE-2015-7022)

  • WebKit (CVE-2015-5928, CVE-2015-5929, CVE-2015-5930, CVE-2015-6981, CVE-2015-6982, CVE-2015-7002, CVE-2015-7005, CVE-2015-7012, CVE-2015-7014)

Binary data apple_ios_91_check.nbin
VendorProductVersionCPE
appleiphone_oscpe:/o:apple:iphone_os

References

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.084 Low

EPSS

Percentile

94.5%