CVE-2015-1157
Published May 28, 2015
Last updated 8 years ago
Overview
- Description
- CoreText in Apple iOS 8.x through 8.3 allows remote attackers to cause a denial of service (reboot and messaging disruption) via crafted Unicode text that is not properly handled during display truncation in the Notifications feature, as demonstrated by Arabic characters in (1) an SMS message or (2) a WhatsApp message.
- Source
- product-security@apple.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.8
- Impact score
- 6.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
- nvd@nist.gov
- CWE-17
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:iphone_os:8.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C7350A49-6D6B-4E03-933E-52453FE33E00" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C067D7E6-41CD-4859-A214-80F4C8E88567" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "245A0B42-AA79-4B33-AAEE-E414B6B1EAC7" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C3064F3-0E1C-4E9D-AB4A-930A38D3939A" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "01986EC5-A2F0-4053-B4FA-B602F505ED8D" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A96C13A0-1ED4-48FD-A401-D5E719FDE2D3" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB8C4D24-60BE-4A9B-88DB-78FE82EF27EE" }, { "criteria": "cpe:2.3:o:apple:iphone_os:8.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "142351F3-B8D8-4BA3-8BE6-CCB67E731D7A" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "322359F4-FA0B-424E-B4AF-6F2204A8EC7E", "versionEndIncluding": "10.0.3" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C417D4CD-EC8C-4572-A017-F571CD6A2F78", "versionEndIncluding": "12.2" } ], "operator": "OR" } ] } ]