Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2015-1157

22
FAUCET Score

CVE-2015-1157 is a denial-of-service vulnerability affecting Apple iOS 8.x through 8.3, where crafted Unicode text (e.g., Arabic characters) in SMS or WhatsApp messages can cause device reboots and messaging disruption due to improper handling during display truncation in the Notifications feature. This vulnerability has a CVSS score of 7.8, indicating high severity with a network-based attack vector and low complexity, leading to a complete denial of availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage.

Impacted Technologies

VendorProductVersion(s)CPE
8.0CPE matchmatch criteria
cpe:2.3:o:apple:iphone_os:8.0:*:*:*:*:*:*:*
8.0.1CPE matchmatch criteria
cpe:2.3:o:apple:iphone_os:8.0.1:*:*:*:*:*:*:*
8.0.2CPE matchmatch criteria
cpe:2.3:o:apple:iphone_os:8.0.2:*:*:*:*:*:*:*
8.1CPE matchmatch criteria
cpe:2.3:o:apple:iphone_os:8.1:*:*:*:*:*:*:*
8.1.2CPE matchmatch criteria
cpe:2.3:o:apple:iphone_os:8.1.2:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

7.8HIGH

AV:N/AC:L/Au:N/C:N/I:N/A:C

Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
Access Vector
NETWORK
Access Complexity
LOW
Authentication
NONE
Exploitability Score
10.0
Impact Score
6.9
CvssVersion
2.0

Exploit Intelligence

EPSS Score
5.55%
Probability of exploitation in next 30 days
EPSS Percentile
92.0%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0555 is in the 86th percentile among its peer group of 51,553 CVEs.

Social Chatter

No social media mentions found for this CVE.

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Vendor Patches (1)

applevendor investigatingvia nvd_reference
View patch

References

9to5mac.com / 2015/05/27/how-to-fix-ios-text-message-bug-crash-reboot
lists.apple.com / archives/security-announce/2015/Jun/msg00001.html
Vendor Advisory
lists.apple.com / archives/security-announce/2015/Jun/msg00002.html
PatchVendor Advisory
lists.apple.com / archives/security-announce/2015/Sep/msg00003.html
PatchVendor Advisory
ghostbin.com / paste/zws9m
support.apple.com / HT205221
Vendor Advisory
support.apple.com / kb/HT204941
Vendor Advisory
support.apple.com / kb/HT204942
Vendor Advisory
ibtimes.co.uk / apple-ios-bug-sees-message-app-crash-iphone-reboot-simply-by-receiving-message-1503083
reddit.com / r/apple/comments/37e8c1/malicious_text_message
Exploit
reddit.com / r/apple/comments/37enow/about_the_latest_iphone_security_vulnerability
reddit.com / r/explainlikeimfive/comments/37edde/eli5_how_that_text_you_can_send_to_friends_turns
Exploit
securityfocus.com / bid/75491
securitytracker.com / id/1032408
zanzebek.com / a-simple-text-message-can-ruin-any-iphone
Exploit