Apple iOS 9.3.x < 9.3.4 Multiple Vulnerabilities

high Nessus Network Monitor Plugin ID 9481

Synopsis

The remote host is missing a critical Apple iOS patch update.

Description

The version of iOS running on the mobile device is prior to 9.3.4, and the following components contain vulnerabilities :

- IOMobile Frame Buffer
- Kernel

Solution

Upgrade to Apple iOS 9.3.4 or later.

See Also

http://www.nessus.org/u?c400269a

https://support.apple.com/en-us/HT207026

Plugin Details

Severity: High

ID: 9481

Published: 8/19/2016

Updated: 3/6/2019

Nessus ID: 92844

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Medium

Base Score: 6.2

Temporal Score: 5.4

Vector: CVSS2#AV:L/AC:H/Au:N/C:C/I:C/A:C

CVSS v3

Risk Factor: High

Base Score: 7.4

Temporal Score: 7.1

Vector: CVSS:3.0/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:X/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:apple:iphone_os

Patch Publication Date: 8/4/2016

Vulnerability Publication Date: 8/4/2016

Reference Information

CVE: CVE-2016-4654, CVE-2016-4655

BID: 92338, 92651