CVE-2015-1153: Medium severity itunes vulnerability
WebKit, as used in Apple Safari before 6.2.6, 7.x before 7.1.6, and 8.x before 8.0.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2015-1152 and CVE-2015-1154.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1153?
CVE-2015-1153 is rated as high severity due to the potential for remote code execution or denial of service.
How do I fix CVE-2015-1153?
To fix CVE-2015-1153, update Safari and iTunes to the latest versions provided by Apple.
Which versions are affected by CVE-2015-1153?
CVE-2015-1153 affects versions of Apple Safari before 6.2.6, 7.x before 7.1.6, and 8.x before 8.0.6, as well as Apple iTunes up to version 12.2.
Can CVE-2015-1153 lead to data theft?
Yes, CVE-2015-1153 can potentially allow attackers to execute arbitrary code, which could lead to data theft.
Is CVE-2015-1153 a local or remote exploit?
CVE-2015-1153 is a remote exploit, meaning it can be triggered by accessing a malicious website.