Apple Safari information leakage (CVE-2015-1112)
Apple Safari information leakage (CVE-2015-1112)
Release date:
Updated on:
Affected Systems:
Apple Safari <8.0.5
Apple Safari <7.1.5
Apple Safari <6.2.5
Description:
Bugtraq id: 73974
CVE (CAN) ID: CVE-2015-1112
Safari is the browser in Mac OS X, the latest operating system of Apple Computer. It uses KDE's KHTML as the core of browser computing.
When Apple Safari is used on versions earlier than iOS 8.3 and other platforms, historical browsing data in the history. plist file is not deleted correctly. Attackers can obtain sensitive information after reading the file.
<* Source: William Breuer
*>
Suggestion:
Vendor patch:
Apple
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://support.apple.com/HT204658
Https://support.apple.com/HT204661
Http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html
Safari details: click here
Safari: click here
This article permanently updates the link address: