Apple iOS 9.0.x < 9.0.2 Security Bypass

Medium Nessus Plugin ID 86253

Synopsis

The version of iOS running on the mobile device is affected by a security bypass vulnerability.

Description

The mobile device is running a version of iOS prior to version 9.0. It is, therefore, affected by security bypass vulnerability that allows a local attacker to bypass the lock screen and perform unauthorized actions.

Solution

Upgrade to Apple iOS version 9.0.2 or later.

See Also

https://support.apple.com/en-us/HT205284

Plugin Details

Severity: Medium

ID: 86253

File Name: apple_ios_902_check.nbin

Version: $Revision: 1.33 $

Type: local

Published: 2015/10/02

Modified: 2018/05/21

Dependencies: 60033

Risk Information

Risk Factor: Medium

CVSSv2

Base Score: 4.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Required KB Items: mdm/dependency/unlocked

Patch Publication Date: 2015/09/30

Vulnerability Publication Date: 2015/09/30

Reference Information

CVE: CVE-2015-5923

BID: 76821

APPLE-SA: APPLE-SA-2015-09-30-01