Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The XPC Services API in LaunchServices in Apple iOS before 9.3 allows attackers to bypass intended event-handler restrictions and modify an arbitrary app's events via a crafted app.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apple iOS LaunchServices 安全漏洞
Vulnerability Description
Apple iOS是美国苹果(Apple)公司的为移动设备所开发的一套操作系统。LaunchServices是其中的一个使用正在运行的应用程序打开其他应用程序或文档的组件。XPC Services API是其中的一个提供了集成GCD和launchd基本进程间通信的轻量级机制组件。 Apple iOS 9.2.1及之前版本的LaunchServices中的XPC Services API中存在安全漏洞。攻击者可借助特制的应用程序利用该漏洞绕过既定的event-handler限制,修改任意应用程序事件。
CVSS Information
N/A
Vulnerability Type
N/A