CVE-2015-3659
Description
The SQLite authorizer in the Storage functionality in WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly restrict access to SQL functions, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted web site.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: product-security@apple.com — http://support.apple.com/kb/HT204950
Vendor advisory: product-security@apple.com — http://support.apple.com/kb/HT204941
Vendor advisory: product-security@apple.com — http://lists.apple.com/archives/security-announce/2015/Jun/msg00004.html
Vendor advisory: product-security@apple.com — http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html
Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2015-3659.html
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| sles | affected | | |
| macos | affected | |
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| apple | safari | {"endIncluding":"6.2.6"} | |
| apple | safari | 7.0 | |
| apple | safari | 7.0.1 | |
| apple | safari | 7.0.2 | |
| apple | safari | 7.0.3 | |
| apple | safari | 7.0.4 | |
| apple | safari | 7.0.5 | |
| apple | safari | 7.0.6 | |
| apple | safari | 7.1.0 | |
| apple | safari | 7.1.1 | |
| apple | safari | 7.1.2 | |
| apple | safari | 7.1.3 | |
| apple | safari | 7.1.4 | |
| apple | safari | 7.1.5 | |
| apple | safari | 7.1.6 | |
| apple | safari | 8.0 | |
| apple | safari | 8.0.1 | |
| apple | safari | 8.0.2 | |
| apple | safari | 8.0.3 | |
| apple | safari | 8.0.4 | |
| apple | safari | 8.0.5 | |
| apple | safari | 8.0.6 | |
References
- https://www.suse.com/security/cve/CVE-2015-3659.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00004.html
- http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204950
- http://www.securityfocus.com/bid/75492
- http://www.securitytracker.com/id/1032754
- http://www.ubuntu.com/usn/USN-2937-1
CWEs
CWE-264
Verify integrity in audit chain (admin only). AS-IS.