CVE-2013-2316: Medium severity Yahoo Yahoo\! Browser Android vulnerability
Published Jun 3, 2013
·Updated
The Yahoo! Browser application 1.4.4 and earlier for Android allows remote attackers to spoof the address bar via vectors related to URL display, a different vulnerability than CVE-2013-2307.
Affected Software
4 affected components
Yahoo Yahoo\! Browser Android<=1.4.3
Yahoo Yahoo\! Browser Android=1.2.0
Yahoo Yahoo\! Browser Android=1.4.2
Yahoo Yahoo\! Browser Android=1.4.4
Event History
Jun 3, 2013
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2013-2316?
CVE-2013-2316 is classified as a moderate severity vulnerability.
2
How does CVE-2013-2316 affect the Yahoo! Browser application?
CVE-2013-2316 allows remote attackers to spoof the address bar in the Yahoo! Browser application.
3
Which versions of Yahoo! Browser are affected by CVE-2013-2316?
CVE-2013-2316 affects Yahoo! Browser versions 1.4.4 and earlier, including versions 1.4.3, 1.4.2, and 1.2.0.
4
How do I fix CVE-2013-2316?
To fix CVE-2013-2316, users should update the Yahoo! Browser application to a version later than 1.4.4.
5
What should users of the Yahoo! Browser do regarding CVE-2013-2316?
Users of the Yahoo! Browser should immediately update their application to mitigate the spoofing vulnerability.