Unrated severityNVD Advisory· Published Oct 23, 2015· Updated May 6, 2026
CVE-2015-6992
CVE-2015-6992
Description
CoreText in Apple iOS before 9.1, OS X before 10.11.1, and iTunes before 12.3.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-6975 and CVE-2015-7017.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*range: <=12.3.0
- (no CPE)range: <12.3.1
- Range: <9.1
- Range: <10.11.1
Patches
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- lists.apple.com/archives/security-announce/2015/Oct/msg00006.htmlnvdPatchVendor Advisory
- lists.apple.com/archives/security-announce/2015/Oct/msg00002.htmlnvdVendor Advisory
- lists.apple.com/archives/security-announce/2015/Oct/msg00005.htmlnvdVendor Advisory
- support.apple.com/HT205370nvdVendor Advisory
- support.apple.com/HT205372nvdVendor Advisory
- support.apple.com/HT205375nvdVendor Advisory
- www.securitytracker.com/id/1033929nvd
News mentions
0No linked articles in our index yet.