Apple iOS < 9.2 Multiple Vulnerabilities

High Nessus Network Monitor Plugin ID 9329

Synopsis

The remote host is missing a critical Apple iOS patch update.

Description

The remote host is running a version of iOS that is prior to version 9.2 and the following components contain vulnerabilities :

- AppleMobileFileIntegrity
- AppSandbox
- CFNetwork HTTPProtocol
- Compression
- CoreGraphics
- CoreMedia Playback
- dyld
- GPUTools Framework
- iBooks
- ImageIO
- IOHIDFamily
- IOKit SCSI
- Kernel
- LaunchServices
- libarchive
- libc
- libxml2
- MobileStorageMounter
- OpenGL
- Photos
- QuickLook
- Safari
- Sandbox
- Security
- Siri
- WebKit

Solution

Upgrade to Apple iOS 9.2 or later.

See Also

https://support.apple.com/en-us/HT205635

http://www.nessus.org/u?cb5b77d7

Plugin Details

Severity: High

ID: 9329

Published: 2016/05/26

Modified: 2016/12/09

Dependencies: 8637

Nessus ID: 87310

Risk Information

Risk Factor: High

CVSSv2

Base Score: 9.3

Temporal Score: 6.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:U/RL:OF/RC:C

CVSSv3

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS3#AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS3#E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Patch Publication Date: 2016/01/16

Vulnerability Publication Date: 2015/12/09

Reference Information

CVE: CVE-2011-2895, CVE-2015-3807, CVE-2015-7001, CVE-2015-7037, CVE-2015-7038, CVE-2015-7039, CVE-2015-7040, CVE-2015-7041, CVE-2015-7042, CVE-2015-7043, CVE-2015-7046, CVE-2015-7047, CVE-2015-7048, CVE-2015-7050, CVE-2015-7051, CVE-2015-7053, CVE-2015-7054, CVE-2015-7055, CVE-2015-7058, CVE-2015-7064, CVE-2015-7065, CVE-2015-7066, CVE-2015-7068, CVE-2015-7069, CVE-2015-7070, CVE-2015-7072, CVE-2015-7073, CVE-2015-7074, CVE-2015-7075, CVE-2015-7079, CVE-2015-7080, CVE-2015-7081, CVE-2015-7083, CVE-2015-7084, CVE-2015-7093, CVE-2015-7094, CVE-2015-7095, CVE-2015-7096, CVE-2015-7097, CVE-2015-7098, CVE-2015-7099, CVE-2015-7100, CVE-2015-7101, CVE-2015-7102, CVE-2015-7103, CVE-2015-7105, CVE-2015-7107, CVE-2015-7111, CVE-2015-7112, CVE-2015-7113, CVE-2015-7115, CVE-2015-7116

BID: 49124, 78719, 78720, 78722, 78724, 78725, 78726, 78728, 78730, 78731, 78732