The Certificate UI in Apple iOS before 8.4.1 does not prevent X.509 certificate acceptance within the lock screen, which allows physically proximate attackers to establish arbitrary certificate trust relationships by completing a dialog.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published: 2015-08-16T23:00:00

Updated: 2024-08-06T05:56:14.915Z

Reserved: 2015-05-07T00:00:00

Link: CVE-2015-3756

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-08-16T23:59:29.533

Modified: 2016-12-24T02:59:14.573

Link: CVE-2015-3756

cve-icon Redhat

No data.