PT-2015-2138 · Apple · Webkit+2
Publicado
2015-09-16
·
Atualizado
2016-12-22
·
CVE-2015-5789
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
WebKit, as used in Apple iOS versions prior to 9
WebKit, as used in Apple iTunes versions prior to 12.3
Description
The issue allows remote attackers to execute arbitrary code or cause a denial of service, resulting in memory corruption and application crash, via a crafted web site. This is due to insufficient input validation in the WebKit component.
Recommendations
For iOS versions prior to 9, update to version 9 or later.
For iTunes versions prior to 12.3, update to version 12.3 or later.
Correção
RCE
DoS
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Webkit
Ios
Itunes