CVE-2013-2307: Medium severity yahoo browser vulnerability
Published Apr 26, 2013
·Updated
The Yahoo! Browser application before 1.4.3 for Android allows remote attackers to spoof the address bar via a crafted web site.
Affected Software
2 affected components
Yahoo Yahoo\! Browser Android<=1.4.2
Yahoo Yahoo\! Browser Android=1.2.0
Event History
Apr 26, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-2307?
CVE-2013-2307 is classified as a medium severity vulnerability.
2
How do I fix CVE-2013-2307?
To mitigate CVE-2013-2307, update the Yahoo! Browser application to version 1.4.3 or later.
3
What does CVE-2013-2307 exploit?
CVE-2013-2307 allows remote attackers to spoof the address bar via a crafted web site.
4
Which versions of the Yahoo! Browser are affected by CVE-2013-2307?
CVE-2013-2307 affects Yahoo! Browser versions before 1.4.3, specifically including 1.2.0 and all versions up to 1.4.2.
5
Can CVE-2013-2307 affect my Android device?
Yes, CVE-2013-2307 can potentially affect any Android device using the vulnerable versions of the Yahoo! Browser.