First published: Mon Mar 23 2015(Updated: )
qt5-qtwebkit before 5.4 records private browsing URLs to its favicon database, WebpageIcons.db.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Qt Qtwebkit | <=5.3.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-8079 has been identified as a vulnerability that could lead to privacy issues in applications using affected versions of QtWebKit.
To fix CVE-2015-8079, update QtWebKit to version 5.4 or later where the issue has been resolved.
CVE-2015-8079 affects all versions of QtWebKit prior to 5.4.
CVE-2015-8079 risks the leaking of URLs visited during private browsing sessions to the favicon database.
There is no documented workaround for CVE-2015-8079 other than upgrading to the fixed version.