CVE-2015-3727
Description
WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly restrict rename operations on WebSQL tables, which allows remote attackers to access an arbitrary web site's database via a crafted web site.
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: product-security@apple.com — http://support.apple.com/kb/HT204950
Vendor advisory: product-security@apple.com — http://support.apple.com/kb/HT204941
Vendor advisory: product-security@apple.com — http://lists.apple.com/archives/security-announce/2015/Jun/msg00004.html
Vendor advisory: product-security@apple.com — http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html
OS impact
| OS | Version | Status | Fixed in |
|---|---|---|---|
| macos | affected | |
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| apple | safari | {"endIncluding":"6.2.6"} | |
| apple | safari | 7.0 | |
| apple | safari | 7.0.1 | |
| apple | safari | 7.0.2 | |
| apple | safari | 7.0.3 | |
| apple | safari | 7.0.4 | |
| apple | safari | 7.0.5 | |
| apple | safari | 7.0.6 | |
| apple | safari | 7.1.0 | |
| apple | safari | 7.1.1 | |
| apple | safari | 7.1.2 | |
| apple | safari | 7.1.3 | |
| apple | safari | 7.1.4 | |
| apple | safari | 7.1.5 | |
| apple | safari | 7.1.6 | |
| apple | safari | 8.0 | |
| apple | safari | 8.0.1 | |
| apple | safari | 8.0.2 | |
| apple | safari | 8.0.3 | |
| apple | safari | 8.0.4 | |
| apple | safari | 8.0.5 | |
| apple | safari | 8.0.6 | |
References
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00004.html
- http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204950
- http://www.securityfocus.com/bid/75492
- http://www.securitytracker.com/id/1032754
- http://www.ubuntu.com/usn/USN-2937-1
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00004.html
- http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
- http://support.apple.com/kb/HT204941
- http://support.apple.com/kb/HT204950
- http://www.securityfocus.com/bid/75492
- http://www.securitytracker.com/id/1032754
- http://www.ubuntu.com/usn/USN-2937-1
CWEs
CWE-264
Verify integrity in audit chain (admin only). AS-IS.