CVE-2008-4230

CVSS 1.9 - LOW
Description

The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 displays SMS messages when the emergency-call screen is visible, which allows physically proximate attackers to obtain sensitive information by reading these messages. NOTE: this might be a duplicate of CVE-2008-4593.

Affected Products
15
Vendor Product Version
apple ipod_touch All versions
apple iphone_os All versions
apple iphone_os 1.0
apple iphone_os 1.0.1
apple iphone_os 1.0.2
apple iphone_os 1.1
apple iphone_os 1.1.1
apple iphone_os 1.1.2
apple iphone_os 1.1.3
apple iphone_os 1.1.4
apple iphone_os 1.1.5
apple iphone_os 2.0
apple iphone_os 2.0.1
apple iphone_os 2.0.2
apple iphone_os 2.1
Weakness Types
CWE-200
CVE Information
CVE ID:
CVE-2008-4230
Published:
2008-11-25
Modified:
2026-04-23
CVSS Score:
1.9
Severity:
LOW
Vector:
AV:L/AC:M/Au:N/C:P/I:N/A:N
Affected Vendors
apple
Quick Actions
CVSS Severity Scale
0.0 - 3.9 LOW
4.0 - 6.9 MEDIUM
7.0 - 8.9 HIGH
9.0 - 10.0 CRITICAL