Apple iOS < 8.1.1 Multiple Vulnerabilities

high Nessus Plugin ID 79312

Synopsis

The version of iOS running on the mobile device is affected by multiple vulnerabilities.

Description

The mobile device is running a version of iOS prior to version 8.1.1.
It is, therefore, affected by vulnerabilities in the following components :

- CFNetwork
- dyld
- Kernel
- Lock Screen
- Sandbox Profiles
- Spotlight
- WebKit

Solution

Upgrade to Apple iOS version 8.1.1 or later.

See Also

https://support.apple.com/en-us/HT204418

Plugin Details

Severity: High

ID: 79312

File Name: apple_ios_811_check.nbin

Version: 1.96

Type: local

Published: 11/18/2014

Updated: 9/4/2024

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: High

Base Score: 9.3

Temporal Score: 6.9

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Required KB Items: mdm/dependency/unlocked

Exploit Ease: No known exploits are available

Patch Publication Date: 11/17/2014

Vulnerability Publication Date: 11/17/2014

Reference Information

CVE: CVE-2014-4451, CVE-2014-4452, CVE-2014-4453, CVE-2014-4455, CVE-2014-4457, CVE-2014-4460, CVE-2014-4461, CVE-2014-4462, CVE-2014-4463

BID: 71135, 71136, 71137, 71138, 71140, 71141, 71142

APPLE-SA: APPLE-SA-2014-11-17-1