AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2015-7036

HIGH · CVSS 7.5 EPSS 39.29%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2015-11-22 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2015-7036
Severity
HIGH
CVSS
7.5
EPSS
39.29%

Original NVD Description

The fts3_tokenizer function in SQLite, as used in Apple iOS before 8.4 and OS X before 10.10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a SQL command that triggers an API call with a crafted pointer value in the second argument.