CVE-2015-1112: Infoleak
Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, as used on iOS before 8.3 and other platforms, does not properly delete browsing-history data from the history.plist file, which allows attackers to obtain sensitive information by reading this file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1112?
CVE-2015-1112 is considered a medium severity vulnerability due to the potential exposure of sensitive browsing data.
How do I fix CVE-2015-1112?
To fix CVE-2015-1112, update your Apple Safari or iOS to the latest versions which are not impacted by this vulnerability.
What platforms are affected by CVE-2015-1112?
CVE-2015-1112 affects Apple Safari versions before 6.2.5 and certain iOS versions up to 8.2.
What type of vulnerability is CVE-2015-1112?
CVE-2015-1112 is a privacy vulnerability that allows attackers to retrieve sensitive information from the browsing history.
Can CVE-2015-1112 lead to data theft?
Yes, CVE-2015-1112 can potentially lead to data theft as it allows unauthorized access to browsing history data.