Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jonathan Levin

#38299of 53,632
7.2Total CVSS
Vulnerabilities · 1
PT-2015-2120
7.2
2015-09-18
Apple · Ios · CVE-2015-5882
**Name of the Vulnerable Software and Affected Versions** Apple iOS versions prior to 9 **Description** The issue is related to insufficient access control in the processor set tasks component of the iOS operating system. It allows a local attacker to bypass existing protection mechanisms and scan ports of random processes. By leveraging root privileges, an attacker can obtain access to the task ports of arbitrary processes. **Recommendations** For Apple iOS versions prior to 9, consider restricting access to the processor set tasks API until a patch is available. As a temporary workaround, limiting the use of root privileges may help minimize the risk of exploitation.