CVE-2015-7080: Apple iPhone OS

Low severity, CVSS 2.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Siri in Apple iOS before 9.2 allows physically proximate attackers to bypass an intended client-side protection mechanism and obtain sensitive content-notification information by listening to a device in the lock-screen state.

Affected products

  • Apple iPhone OS: up to and including 9.1

Published 2015-12-11. Last modified 2026-06-17.