First published: Tue Aug 21 2018(Updated: )
An issue was discovered in Bloop Airmail 3 3.5.9 for macOS. Its primary WebView instance implements "webView:decidePolicyForNavigationAction:request:frame:decisionListener:" such that requests from HTMLIFrameElements are blacklisted. However, other sub-classes of HTMLFrameOwnerElements are not forbidden by the policy. An attacker may abuse HTML plug-in elements within an email to trigger frame navigation requests that bypass this filter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bloop Airmail 3 | =3.5.9 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this issue is CVE-2018-15669.
The affected software is Bloop Airmail 3 version 3.5.9 for macOS.
The severity of CVE-2018-15669 is medium with a CVSS score of 5.3.
This vulnerability allows certain sub-classes of HTMLFrameOwnerElements to bypass blacklisting and potentially perform unauthorized actions.
To fix CVE-2018-15669, it is recommended to update Bloop Airmail 3 to the latest version.