فا

‫ Apple OS X Weaknesses and WebKit Vulnerability

ID: IRCAD2014113632
Release Date: 2014-11-18
Criticality level: Highly critical
Software:
Apple Macintosh OS X
Description:
Two weaknesses and a vulnerability have been reported in Apple OS X, which can be exploited by malicious people to disclose certain sensitive information and compromise a vulnerable system.
1) An error within the Spotlight component can be exploited to e.g. disclose the user's approximate location.
2) An error within the About This Mac component can be exploited to disclose certain cookies.
3) A use-after-free error within WebKit when handling page objects can be exploited to cause memory corruption.
Successful exploitation of this vulnerability may allow execution of arbitrary code.
The weaknesses and vulnerability are reported in versions prior to 10.10.1.
Solution
Update to version 10.10.1.
References:
APPLE-SA-2014-11-17-2:
Secunia:
 
 
 

نظرات

بدون نظر
شما برای نظر دادن باید وارد شوید

نوشته

 
تاریخ ایجاد: 8 آذر 1393

امتیاز

امتیاز شما
تعداد امتیازها: 0