WebKit, as used in Apple iOS before 8.1.1 and Apple TV before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-4462.
2014-11-18T11:59:01.403
2025-04-12T10:46:40.837
Deferred
CVSSv2: 5.4 (MEDIUM)
AV:A/AC:M/Au:N/C:P/I:P/A:P
5.5
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | tvos | < 7.0.2 | Yes |
Operating System | apple | iphone_os | < 8.1.1 | Yes |
Application | apple | safari | < 6.2.1 | Yes |
Application | apple | safari | < 7.1.1 | Yes |
Application | apple | safari | < 8.0.1 | Yes |
Application | apple | itunes | < 12.2 | Yes |