CVE-2015-6999
23.10.2015, 10:59
The OCSP client in Apple iOS before 9.1 does not check for certificate expiry, which allows remote attackers to spoof a valid certificate by leveraging access to a revoked certificate.Enginsight
Vendor | Product | Version |
---|---|---|
apple | iphone_os | 𝑥 ≤ 9.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References