Apple iOS before 9.0.2 does not properly restrict the options available on the lock screen, which allows physically proximate attackers to read contact data or view photos via unspecified vectors.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1033687 | vdb entry |
https://support.apple.com/HT205284 | vendor advisory |
http://lists.apple.com/archives/security-announce/2015/Sep/msg00006.html | vendor advisory |