Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Siri in Apple iOS before 7.1.2 allows physically proximate attackers to bypass an intended lock-screen passcode requirement, and read a contact list, via a Siri request that refers to a contact ambiguously.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple iOS Siri 权限许可和访问控制漏洞
Vulnerability Description
Apple iOS是美国苹果(Apple)公司为移动设备所开发的一套操作系统。 Apple iOS 7.1.1及之前版本的Siri中存在安全漏洞,该漏洞源于如果Siri请求可以引用多个联系人中的其中一个联系人,则Siri会显示一个可能的选项列表以及用于显示完整联系人列表的选项“更多...”。在锁定屏幕中使用时,Siri不需要在查看完整联系人列表之前输入密码。可直接访问设备的攻击者可利用该漏洞查看所有联系人。
CVSS Information
N/A
Vulnerability Type
N/A