CVE-2015-3759: Apple iPhone OS

Medium severity, CVSS 4.6. EPSS: 0.4% chance of exploitation in the next 30 days.

Location Framework in Apple iOS before 8.4.1 allows local users to bypass intended restrictions on filesystem modification via a symlink.

Affected products

  • Apple iPhone OS: up to and including 8.4

Published 2015-08-16. Last modified 2026-06-17.