Apple iOS < 8.1.1 Multiple Vulnerabilities

High Nessus Plugin ID 79312

Synopsis

The version of iOS running on the mobile device is affected by multiple vulnerabilities.

Description

The mobile device is running a version of iOS prior to version 8.1.1.
It is, therefore, affected by vulnerabilities in the following components :

- CFNetwork
- dyld
- Kernel
- Lock Screen
- Sandbox Profiles
- Spotlight
- WebKit

Solution

Upgrade to Apple iOS version 8.1.1 or later.

See Also

https://support.apple.com/en-us/HT6590

Plugin Details

Severity: High

ID: 79312

File Name: apple_ios_811_check.nbin

Version: $Revision: 1.38 $

Type: local

Published: 2014/11/18

Modified: 2018/05/21

Dependencies: 60033

Risk Information

Risk Factor: High

CVSSv2

Base Score: 9.3

Temporal Score: 8.1

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:ND/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Required KB Items: mdm/dependency/unlocked

Exploit Available: false

Exploit Ease: No known exploits are available

Patch Publication Date: 2014/11/17

Vulnerability Publication Date: 2014/11/17

Reference Information

CVE: CVE-2014-4451, CVE-2014-4452, CVE-2014-4453, CVE-2014-4455, CVE-2014-4457, CVE-2014-4460, CVE-2014-4461, CVE-2014-4462, CVE-2014-4463

BID: 71138, 71137, 71135, 71140, 71135, 71136, 71142, 71141

APPLE-SA: APPLE-SA-2014-11-17-1