First published: Thu Mar 24 2016(Updated: )
The Top Sites feature in Apple Safari before 9.1 mishandles cookie storage, which makes it easier for remote web servers to track users via unspecified vectors.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mobile Safari | <=9.0.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1772 is considered a moderate severity vulnerability due to its potential for tracking users without their consent.
To fix CVE-2016-1772, update your Apple Safari to version 9.1 or later.
CVE-2016-1772 affects Apple Safari versions up to and including 9.0.3.
CVE-2016-1772 is a cookie storage vulnerability that can lead to user tracking by remote web servers.
Users of Apple Safari versions prior to 9.1 are at risk from CVE-2016-1772.