Apple iOS 9.0.x < 9.0.2 Security Bypass

low Nessus Plugin ID 86253

Synopsis

The version of iOS running on the mobile device is affected by a security bypass vulnerability.

Description

The mobile device is running a version of iOS prior to version 9.0. It is, therefore, affected by security bypass vulnerability that allows a local attacker to bypass the lock screen and perform unauthorized actions.

Solution

Upgrade to Apple iOS version 9.0.2 or later.

See Also

https://support.apple.com/en-us/HT205284

Plugin Details

Severity: Low

ID: 86253

File Name: apple_ios_902_check.nbin

Version: 1.90

Type: local

Published: 10/2/2015

Updated: 9/4/2024

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 2.5

CVSS v2

Risk Factor: Low

Base Score: 2.1

Temporal Score: 1.6

Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:N/A:N

CVSS Score Source: CVE-2015-5923

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Required KB Items: mdm/dependency/unlocked

Exploit Ease: No known exploits are available

Patch Publication Date: 9/30/2015

Vulnerability Publication Date: 9/30/2015

Reference Information

CVE: CVE-2015-5923

BID: 76821

APPLE-SA: APPLE-SA-2015-09-30-01