CVE-2015-3741
Summary
WebKit, as used in Apple iOS before 8.4.1 and Safari before 6.2.8, 7.x before 7.1.8, and 8.x before 8.0.8, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-08-13-1 and APPLE-SA-2015-08-13-3.
Impact & exploitability
AV:N/AC:M/Au:N/C:P/I:P/A:P
Affected products we track (1)
Recommendation
Apply the vendor fix in your normal patch cycle. Open any affected product above for its exact safe version.
Official patch: http://lists.apple.com/archives/security-announce/2015/Sep/msg00003.html ↗
Additional information
- NVD record
- http://lists.apple.com/archives/security-announce/2015/Sep/msg00003.htmlPatch
- http://lists.apple.com/archives/security-announce/2015/Aug/msg00000.htmlAdvisory
- http://lists.apple.com/archives/security-announce/2015/Aug/msg00002.htmlAdvisory
- https://support.apple.com/HT205221Advisory
- http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.htmlAdvisory
- http://www.securityfocus.com/bid/76338Advisory
- http://www.securitytracker.com/id/1033274Advisory
- http://www.ubuntu.com/usn/USN-2937-1Advisory