CERT-In Advisory
CIAD-2013-0092
Multiple Vulnerabilities in Apple Safari
Original Issue Date: December 24, 2013
Severity Rating: High
Systems Affected
- OS X Lion v10.7.5
- OS X Lion Server v10.7.5
- OS X Mountain Lion v10.8.5
- OS X Mavericks v10.9
Software Affected
- Apple Safari Versions prior to 6.1.1
- Apple Safari Versions 7.x prior to 7.0.1
Overview
Multiple Vulnerabilities have been reported in Apple Safari which could allow a remote attacker to bypass certain security restrictions, disclose potentially sensitive information, execute arbitrary code and cause denial of service condition.
Description
1. Cross Origin Information Disclosure vulnerability
(
CVE-2013-5227
)
This vulnerability is caused due to an error in origin tracking in Apple Safari. A remote attacker could exploit this vulnerability via autofill form into a subframe from a different domain than the main frame to bypass same origin policy. Successful exploitation of this vulnerability could allow a remote attacker to disclose potentially sensitive information.
2. Use-after-free vulnerability
(
CVE-2013-2909
)
This vulnerability is caused due to use-after-free error in Blink within webkit in Apple Safari. A remote attacker could exploit this vulnerability via a specially crafted website to trigger use-after-free error. Successful exploitation of this vulnerability could allow a remote attacker to cause denial of service condition.
3. Multiple memory corruption vulnerabilities
(
CVE-2013-5195
CVE-2013-5196
CVE-2013-5197
CVE-2013-5198
CVE-2013-5199
)
These vulnerabilities are caused due to various errors within web kit in Apple Safari. A remote attacker could exploit these vulnerabilities via a specially crafted website to trigger memory corruption errors. Successful exploitation of these vulnerabilities could allow a remote attacker to execute arbitrary code or cause denial of service condition.
Solution
Update to Apple Safari version 6.1.1. or 7.0.1
http://support.apple.com/kb/HT1338
http://www.apple.com/support/downloads/
Vendor Information
Apple
http://support.apple.com/kb/ht6082
References
Secunia
http://secunia.com/advisories/56122/
Security Tracker
http://securitytracker.com/id/1029505
Secure List
http://www.securelist.com/en/advisories/56122
Security Focus
http://www.securityfocus.com/bid/64355/info
http://www.securityfocus.com/bid/62752
http://www.securityfocus.com/archive/1/530369
http://www.securityfocus.com/bid/64356
CVE Name
CVE-2013-5227
CVE-2013-2909
CVE-2013-5195
CVE-2013-5196
CVE-2013-5197
CVE-2013-5198
CVE-2013-5199
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|