CVE-2009-2198

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
04/08/2009
Last modified:
09/04/2025

Description

Apple GarageBand before 5.1 reconfigures Safari to accept all cookies regardless of domain name, which makes it easier for remote web servers to track users.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:apple:garageband:*:*:*:*:*:*:*:* 5.0.2 (including)
cpe:2.3:a:apple:garageband:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:apple:garageband:4.1.2:*:*:*:*:*:*:*
cpe:2.3:a:apple:garageband:5.0:*:*:*:*:*:*:*
cpe:2.3:a:apple:garageband:5.0.1:*:*:*:*:*:*:*