WebKit Memory Corruption Vulnerability (CVE-2015-1123)
WebKit Memory Corruption Vulnerability (CVE-2015-1123)
Release date:
Updated on:
Affected Systems:
Apple TV <1, 7.2
Apple iOS <8.3
Description:
Bugtraq id: 73986
CVE (CAN) ID: CVE-2015-1123
WebKit is an open-source browser engine and the name of the Framework Version of Apple Mac OS X System engine.
In versions earlier than Apple iOS 8.3 and earlier than Apple TV 7.2, the WebKit has a memory corruption vulnerability, allowing remote attackers to access constructed websites, attackers can exploit this vulnerability to execute arbitrary code or cause DoS (memory corruption and application crash ).
<* Source: Randy Luecke
Anoop Menon
*>
Suggestion:
Vendor patch:
Apple
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://support.apple.com/HT204662
Https://support.apple.com/HT204661
Http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html
Http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html
This article permanently updates the link address: