MEDIUM
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1
Published Mar 18, 2015
6.8
MEDIUMCVSS 2.0
EPSS 2.69%
Description
WebKit, as used in Apple Safari before 6.2.4, 7.x before 7.1.4, and 8.x before 8.0.4, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other CVEs listed in APPLE-SA-2015-03-17-1.
Affected products
No data.
Configuration 4
OR
- ≤ 6.2.3
- 7.0
- 7.0.1
- 7.0.2
- 7.0.3
- 7.0.4
- 7.0.5
- 7.0.6
- 7.1.0
- 7.1.1
- 7.1.2
- 7.1.3
- 8.0.0
- 8.0.1
- 8.0.2
- 8.0.3
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (9)
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://lists.apple.com/archives/security-announce/2015/Mar/msg00004.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://www.securitytracker.com/id/1031936 vdb-entryx_refsource_SECTRACK
- https://support.apple.com/HT204560 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT204661 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/HT204662 x_refsource_CONFIRMVendor Advisory
- https://support.apple.com/kb/HT204949 x_refsource_CONFIRMVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html | vendor-advisoryx_refsource_APPLEVendor Advisory | |
| http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html | vendor-advisoryx_refsource_APPLEVendor Advisory | |
| http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html | vendor-advisoryx_refsource_APPLEVendor Advisory | |
| http://lists.apple.com/archives/security-announce/2015/Mar/msg00004.html | vendor-advisoryx_refsource_APPLEVendor Advisory | |
| http://www.securitytracker.com/id/1031936 | vdb-entryx_refsource_SECTRACK | |
| https://support.apple.com/HT204560 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT204661 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/HT204662 | x_refsource_CONFIRMVendor Advisory | |
| https://support.apple.com/kb/HT204949 | x_refsource_CONFIRMVendor Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner apple
Published Mar 18, 2015
Updated Aug 6, 2024
Reserved Jan 16, 2015
Link CVE-2015-1072
CISA Vulnrichment
Updated n/a