CVE-2015-1126
10.04.2015, 14:59
WebKit, as used in Apple iOS before 8.3 and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, does not properly handle the userinfo field in FTP URLs, which allows remote attackers to trigger incorrect resource access via unspecified vectors.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apple | iphone_os | 𝑥 ≤ 8.2 |
| apple | safari | 𝑥 ≤ 6.2.4 |
| apple | safari | 7.0 |
| apple | safari | 7.0.1 |
| apple | safari | 7.0.2 |
| apple | safari | 7.0.3 |
| apple | safari | 7.0.4 |
| apple | safari | 7.0.5 |
| apple | safari | 7.0.6 |
| apple | safari | 7.1.0 |
| apple | safari | 7.1.1 |
| apple | safari | 7.1.2 |
| apple | safari | 7.1.3 |
| apple | safari | 7.1.4 |
| apple | safari | 8.0.0 |
| apple | safari | 8.0.1 |
| apple | safari | 8.0.2 |
| apple | safari | 8.0.3 |
| apple | safari | 8.0.4 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| qtwebkit-opensource-src |
| ||||||||||||||||
| qtwebkit-source |
| ||||||||||||||||
| webkit |
| ||||||||||||||||
| webkitgtk |
|
Common Weakness Enumeration
References