CVE-2014-4463: Apple iPhone OS

Low severity, CVSS 2.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Apple iOS before 8.1.1 allows physically proximate attackers to bypass the lock-screen protection mechanism, and view or transmit a Photo Library photo, via the FaceTime "Leave a Message" feature.

Affected products

  • Apple iPhone OS: up to and including 8.1; version 8.0 only; version 8.0.1 only; version 8.0.2 only

Published 2014-11-18. Last modified 2026-06-17.