PT-2008-5810 · Apple · Iphone
Published
2008-10-17
·
Updated
2017-08-08
·
CVE-2008-4593
CVSS v2.0
1.2
Low
| Vector | AV:L/AC:H/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apple iPhone version 2.1 with firmware 5F136
Description
The issue allows physically proximate attackers to obtain sensitive information by performing an Emergency Call tap and then reading SMS messages on the device screen when Require Passcode is enabled and Show SMS Preview is disabled.
Recommendations
For Apple iPhone version 2.1 with firmware 5F136, consider enabling Show SMS Preview or disabling the Emergency Call feature as a temporary workaround to minimize the risk of exploitation.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Iphone