CVE-2015-6999
23.10.2015, 10:59
The OCSP client in Apple iOS before 9.1 does not check for certificate expiry, which allows remote attackers to spoof a valid certificate by leveraging access to a revoked certificate.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apple | iphone_os | 𝑥 ≤ 9.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References