CVE-2015-1120
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/04/2015
Last modified:
12/04/2025
Description
WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-04-08-1, APPLE-SA-2015-04-08-3, and APPLE-SA-2015-04-08-4.
Impact
Base Score 2.0
6.80
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:* | 12.1 (including) | |
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* | 8.2 (including) | |
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:* | 7.1 (including) | |
cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:* | 6.2.4 (including) | |
cpe:2.3:a:apple:safari:7.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.0.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.1.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.1.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.1.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:apple:safari:7.1.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html
- http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
- http://www.securityfocus.com/bid/73972
- http://www.securitytracker.com/id/1032047
- http://www.ubuntu.com/usn/USN-2937-1
- https://support.apple.com/HT204658
- https://support.apple.com/HT204661
- https://support.apple.com/HT204662
- https://support.apple.com/kb/HT204949
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00000.html
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00002.html
- http://lists.apple.com/archives/security-announce/2015/Apr/msg00003.html
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00006.html
- http://lists.opensuse.org/opensuse-updates/2016-03/msg00132.html
- http://www.securityfocus.com/bid/73972
- http://www.securitytracker.com/id/1032047
- http://www.ubuntu.com/usn/USN-2937-1
- https://support.apple.com/HT204658
- https://support.apple.com/HT204661
- https://support.apple.com/HT204662
- https://support.apple.com/kb/HT204949