CVE-2015-1122

WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-04-08-1, APPLE-SA-2015-04-08-3, and APPLE-SA-2015-04-08-4.
References
Link Resource
http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html Patch Vendor Advisory
http://lists.opensuse.org/opensuse-updates/2016-03/msg00054.html
http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
http://www.securityfocus.com/bid/73972
http://www.securitytracker.com/id/1032047
http://www.ubuntu.com/usn/USN-2937-1
https://support.apple.com/HT204658 Vendor Advisory
https://support.apple.com/HT204661 Vendor Advisory
https://support.apple.com/HT204662 Vendor Advisory
https://support.apple.com/kb/HT204949 Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html Vendor Advisory
http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html Patch Vendor Advisory
http://lists.opensuse.org/opensuse-updates/2016-03/msg00054.html
http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
http://www.securityfocus.com/bid/73972
http://www.securitytracker.com/id/1032047
http://www.ubuntu.com/usn/USN-2937-1
https://support.apple.com/HT204658 Vendor Advisory
https://support.apple.com/HT204661 Vendor Advisory
https://support.apple.com/HT204662 Vendor Advisory
https://support.apple.com/kb/HT204949 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0.4:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0.5:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.0.6:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.1.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.1.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.1.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.1.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:7.1.4:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:8.0.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:8.0.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:8.0.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:8.0.3:*:*:*:*:*:*:*
cpe:2.3:a:apple:safari:8.0.4:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

Configuration 4 (hide)

cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:24

Type Values Removed Values Added
References () http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html - Vendor Advisory () http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html - Vendor Advisory
References () http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html - Vendor Advisory () http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html - Vendor Advisory
References () http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html - Vendor Advisory () http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html - Vendor Advisory
References () http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html - Patch, Vendor Advisory () http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html - Patch, Vendor Advisory
References () http://lists.opensuse.org/opensuse-updates/2016-03/msg00054.html - () http://lists.opensuse.org/opensuse-updates/2016-03/msg00054.html -
References () http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html - () http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html -
References () http://www.securityfocus.com/bid/73972 - () http://www.securityfocus.com/bid/73972 -
References () http://www.securitytracker.com/id/1032047 - () http://www.securitytracker.com/id/1032047 -
References () http://www.ubuntu.com/usn/USN-2937-1 - () http://www.ubuntu.com/usn/USN-2937-1 -
References () https://support.apple.com/HT204658 - Vendor Advisory () https://support.apple.com/HT204658 - Vendor Advisory
References () https://support.apple.com/HT204661 - Vendor Advisory () https://support.apple.com/HT204661 - Vendor Advisory
References () https://support.apple.com/HT204662 - Vendor Advisory () https://support.apple.com/HT204662 - Vendor Advisory
References () https://support.apple.com/kb/HT204949 - Vendor Advisory () https://support.apple.com/kb/HT204949 - Vendor Advisory

Information

Published : 2015-04-10 14:59

Updated : 2024-11-21 02:24


NVD link : CVE-2015-1122

Mitre link : CVE-2015-1122

CVE.ORG link : CVE-2015-1122


JSON object : View

Products Affected

apple

  • iphone_os
  • safari
  • itunes
  • tvos