WebKit same-source policy Multiple Security Restriction Bypass Vulnerability
WebKit same-source policy Multiple Security Restriction Bypass Vulnerability
Release date:
Updated on:
Affected Systems:
WebKit Open Source Project WebKit
Apple iOS 5.x
Apple iOS 4.x
Description:
Bugtraq id: 76341
CVE (CAN) ID: CVE-2015-3750, CVE-2015-3751, CVE-2015-3752, CVE-2015-3753
WebKit is an open-source browser engine and the name of the Framework Version of Apple Mac OS X System engine.
WebKit has multiple security restriction bypass vulnerabilities. Attackers can exploit these vulnerabilities to bypass same-origin policy restrictions and perform unauthorized operations in affected applications.
<* Source: Muneaki Nishimura (nishimunea)
Antonio Sanso
Damien Antipa
*>
Suggestion:
Vendor patch:
WebKit Open Source Project
--------------------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://webkit.org/
Https://support.apple.com/en-us/HT205030
This article permanently updates the link address: