PT-2018-13131 · Bloop · Bloop Airmail 3

Publicado

2018-08-21

·

Atualizado

2021-09-08

·

CVE-2018-15670

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Bloop Airmail 3 version 3.5.9
Description An issue was discovered where the primary WebView instance in Bloop Airmail 3 for macOS implements a decision policy for navigation actions. This policy allows OpenURL to be the default URL handler, but only processes navigation requests when the current event is triggered by a mouse click. An attacker may exploit this by using HTML elements with event handlers to validate navigation requests for specific URLs during these events.
Recommendations For Bloop Airmail 3 version 3.5.9, consider disabling the webView:decidePolicyForNavigationAction:request:frame:decisionListener: function as a temporary workaround until a patch is available. Restrict access to the primary WebView instance to minimize the risk of exploitation. Avoid using HTML elements with event handlers in emails to prevent potential abuse.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-15670

Produtos afetados

Bloop Airmail 3