CVE-2015-5892: Apple iPhone OS

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Siri in Apple iOS before 9 allows physically proximate attackers to bypass an intended client-side protection mechanism and obtain sensitive content-notification information by listening to a device in the lock-screen state.

Affected products

  • Apple iPhone OS: up to and including 8.4.1

Published 2015-09-18. Last modified 2026-06-17.