ID

VAR-201103-0264


CVE

CVE-2011-0163


TITLE

plural Apple Product WebKit Service disruption in (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2011-001376

DESCRIPTION

WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle unspecified "cached resources," which allows remote attackers to cause a denial of service (resource unavailability) via a crafted web site that conducts a cache-poisoning attack. plural Apple Product WebKit Has a deficiency in the processing of cache resources. (DoS) There is a vulnerability that becomes a condition.Service disruption by a third party (DoS) There is a possibility of being put into a state. Apple Mobile Safari on iOS is prone to a denial-of-service vulnerability when handling specially crafted webpages. Attackers can exploit this issue to prevent other sites from requesting resources. Versions prior to iOS 4.3 are vulnerable. WebKit is a set of open source web browser engines jointly developed by companies such as KDE, Apple (Apple), and Google (Google), and is currently used by browsers such as Apple Safari and Google Chrome. ---------------------------------------------------------------------- Get a tax break on purchases of Secunia Solutions! If you are a U.S. company, you may be qualified for a tax break for your software purchases. Learn more at: http://secunia.com/products/corporate/vim/section_179/ ---------------------------------------------------------------------- TITLE: Apple Safari Multiple Vulnerabilities SECUNIA ADVISORY ID: SA43696 VERIFY ADVISORY: Secunia.com http://secunia.com/advisories/43696/ Customer Area (Credentials Required) https://ca.secunia.com/?page=viewadvisory&vuln_id=43696 RELEASE DATE: 2011-03-11 DISCUSS ADVISORY: http://secunia.com/advisories/43696/#comments AVAILABLE ON SITE AND IN CUSTOMER AREA: * Last Update * Popularity * Comments * Criticality Level * Impact * Where * Solution Status * Operating System / Software * CVE Reference(s) http://secunia.com/advisories/43696/ ONLY AVAILABLE IN CUSTOMER AREA: * Authentication Level * Report Reliability * Secunia PoC * Secunia Analysis * Systems Affected * Approve Distribution * Remediation Status * Secunia CVSS Score * CVSS https://ca.secunia.com/?page=viewadvisory&vuln_id=43696 ONLY AVAILABLE WITH SECUNIA CSI AND SECUNIA PSI: * AUTOMATED SCANNING http://secunia.com/vulnerability_scanning/personal/ http://secunia.com/vulnerability_scanning/corporate/wsus_sccm_3rd_third_party_patching/ DESCRIPTION: Multiple vulnerabilities have been reported in Apple Safari, which can be exploited by malicious people to disclose potentially sensitive information, conduct cross-site scripting and spoofing attacks, and compromise a user's system. For more information: SA43582 1) An error in the WebKit component when handling redirects during HTTP Basic Authentication can be exploited to disclose the credentials to another site. This may be related to: SA40110 2) An error in the WebKit component when handling the Attr.style accessor can be exploited to inject an arbitrary Cascading Style Sheet (CSS) into another document. 4) An error in the WebKit component when handling HTML5 drag and drop operations across different origins can be exploited to disclose certain content to another site. 5) An error in the tracking of window origins within the WebKit component can be exploited to disclose the content of files to a remote server. 6) Input passed to the "window.console._inspectorCommandLineAPI" property while browsing using the Web Inspector is not properly sanitised before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user's browser session in context of an affected site. SOLUTION: Update to version 5.0.4. Further details available in Customer Area: http://secunia.com/products/corporate/EVM/ PROVIDED AND/OR DISCOVERED BY: 2, 3, 6) Reported by the vendor. The vendor also credits: 1) McIntosh Cooey, Twelve Hundred Group 1) Harald Hanche-Olsen 1) Chuck Hohn, 1111 Internet LLC via CERT 1) Paul Hinze, Braintree 4) Michal Zalewski, Google Inc. 5) Aaron Sigel, vtty.com ORIGINAL ADVISORY: http://support.apple.com/kb/HT4566 OTHER REFERENCES: Further details available in Customer Area: http://secunia.com/products/corporate/EVM/ DEEP LINKS: Further details available in Customer Area: http://secunia.com/products/corporate/EVM/ EXTENDED DESCRIPTION: Further details available in Customer Area: http://secunia.com/products/corporate/EVM/ EXTENDED SOLUTION: Further details available in Customer Area: http://secunia.com/products/corporate/EVM/ EXPLOIT: Further details available in Customer Area: http://secunia.com/products/corporate/EVM/ ---------------------------------------------------------------------- About: This Advisory was delivered by Secunia as a free service to help private users keeping their systems up to date against the latest vulnerabilities. Subscribe: http://secunia.com/advisories/secunia_security_advisories/ Definitions: (Criticality, Where etc.) http://secunia.com/advisories/about_secunia_advisories/ Please Note: Secunia recommends that you verify all advisories you receive by clicking the link. Secunia NEVER sends attached files with advisories. Secunia does not advise people to install third party patches, only use those supplied by the vendor. ---------------------------------------------------------------------- Unsubscribe: Secunia Security Advisories http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org ---------------------------------------------------------------------- . For more information see vulnerability #14: SA40664 2) An error in the FreeType library when processing TrueType fonts can be exploited to cause a heap-based buffer overflow. 6) A weakness in MobileSafari when being re-opened after another application is launched via a URL handler can be exploited to prevent the browser from being used. 7) A boundary error when handling Wi-Fi frames can be exploited to cause a device to restart

Trust: 2.16

sources: NVD: CVE-2011-0163 // JVNDB: JVNDB-2011-001376 // BID: 46815 // VULHUB: VHN-48108 // PACKETSTORM: 99187 // PACKETSTORM: 99182

AFFECTED PRODUCTS

vendor:applemodel:safariscope:eqversion:2

Trust: 1.6

vendor:applemodel:safariscope:eqversion:2.0.1

Trust: 1.6

vendor:applemodel:safariscope:eqversion:2.0.3

Trust: 1.6

vendor:applemodel:safariscope:eqversion:1.3.0

Trust: 1.6

vendor:applemodel:safariscope:eqversion:1.3.2

Trust: 1.6

vendor:applemodel:safariscope:eqversion:2.0

Trust: 1.6

vendor:applemodel:safariscope:eqversion:1.0.3

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.0.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.3b

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.2.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.3

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:4.1.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.1b

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.1.0b

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.1.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.2b

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.1.4

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.1.5

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.1.0

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.1.3

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.1.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2.0

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.2.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:2.0.0

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.0.1

Trust: 1.0

vendor:applemodel:safariscope:lteversion:5.0.3

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.1.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.2.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:4.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.3

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.1.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.2.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2.5

Trust: 1.0

vendor:applemodel:safariscope:eqversion:5.0.2

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.0.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.2.2

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.1.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.0b

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:5.0.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.0.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.1.2

Trust: 1.0

vendor:applemodel:webkitscope:eqversion:*

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.0.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.1.3

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:4.0.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.0

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.0.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:5.0

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:4.0.1

Trust: 1.0

vendor:applemodel:iphone osscope:lteversion:4.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.0.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2.4

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.0.0b1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.4

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.1.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.1.2

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.0.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:4.1.2

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.2.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:4.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:4.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:2.0.2

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:3.0

Trust: 1.0

vendor:applemodel:safariscope:eqversion:2.0.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.0.0b2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:3.0.4b

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2.3

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.3.1

Trust: 1.0

vendor:applemodel:safariscope:eqversion:1.1.1

Trust: 1.0

vendor:applemodel:iphone osscope:eqversion:1.0.2

Trust: 1.0

vendor:applemodel:safariscope:eqversion:2.0.4

Trust: 1.0

vendor:applemodel:mac os xscope:eqversion:v10.5.8

Trust: 0.8

vendor:applemodel:mac os x serverscope:eqversion:v10.5.8

Trust: 0.8

vendor:applemodel:iosscope:eqversion:3.0 to 4.2.1 (iphone 3gs after )

Trust: 0.8

vendor:applemodel:iosscope:eqversion:3.1 to 4.2.1 (ipod touch (3rd generation) after )

Trust: 0.8

vendor:applemodel:iosscope:eqversion:3.2 to 4.2.1 (ipad for )

Trust: 0.8

vendor:applemodel:ipadscope: - version: -

Trust: 0.8

vendor:applemodel:iphonescope: - version: -

Trust: 0.8

vendor:applemodel:ipod touchscope: - version: -

Trust: 0.8

vendor:applemodel:safariscope:eqversion:5

Trust: 0.8

vendor:applemodel:iosscope:eqversion:4.2.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.0.1

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.2

Trust: 0.3

vendor:applemodel:mobile safariscope:eqversion:0

Trust: 0.3

vendor:applemodel:iphonescope:eqversion:0

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2.1

Trust: 0.3

vendor:applemodel:ipod touchscope:eqversion:0

Trust: 0.3

vendor:applemodel:ipadscope:eqversion:0

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4.0.2

Trust: 0.3

vendor:applemodel:ios betascope:eqversion:4.2

Trust: 0.3

vendor:applemodel:iosscope:eqversion:4

Trust: 0.3

vendor:applemodel:iosscope:eqversion:3.2

Trust: 0.3

vendor:applemodel:iosscope:neversion:4.3

Trust: 0.3

sources: BID: 46815 // JVNDB: JVNDB-2011-001376 // CNNVD: CNNVD-201103-188 // NVD: CVE-2011-0163

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2011-0163
value: MEDIUM

Trust: 1.0

NVD: CVE-2011-0163
value: MEDIUM

Trust: 0.8

CNNVD: CNNVD-201103-188
value: MEDIUM

Trust: 0.6

VULHUB: VHN-48108
value: MEDIUM

Trust: 0.1

nvd@nist.gov: CVE-2011-0163
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-48108
severity: MEDIUM
baseScore: 4.3
vectorString: AV:N/AC:M/AU:N/C:N/I:N/A:P
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: PARTIAL
exploitabilityScore: 8.6
impactScore: 2.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-48108 // JVNDB: JVNDB-2011-001376 // CNNVD: CNNVD-201103-188 // NVD: CVE-2011-0163

PROBLEMTYPE DATA

problemtype:CWE-20

Trust: 1.9

sources: VULHUB: VHN-48108 // JVNDB: JVNDB-2011-001376 // NVD: CVE-2011-0163

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201103-188

TYPE

input validation

Trust: 0.6

sources: CNNVD: CNNVD-201103-188

CONFIGURATIONS

sources: JVNDB: JVNDB-2011-001376

PATCH

title:HT4564url:http://support.apple.com/kb/HT4564

Trust: 0.8

title:HT4566url:http://support.apple.com/kb/HT4566

Trust: 0.8

title:HT4564url:http://support.apple.com/kb/HT4564?viewlocale=ja_JP

Trust: 0.8

title:HT4566url:http://support.apple.com/kb/HT4566?viewlocale=ja_JP

Trust: 0.8

sources: JVNDB: JVNDB-2011-001376

EXTERNAL IDS

db:NVDid:CVE-2011-0163

Trust: 2.8

db:SECTRACKid:1025182

Trust: 1.9

db:XFid:66001

Trust: 0.8

db:JVNDBid:JVNDB-2011-001376

Trust: 0.8

db:CNNVDid:CNNVD-201103-188

Trust: 0.7

db:SECUNIAid:43696

Trust: 0.7

db:SECUNIAid:43698

Trust: 0.7

db:APPLEid:APPLE-SA-2011-03-09-2

Trust: 0.6

db:APPLEid:APPLE-SA-2011-03-09-1

Trust: 0.6

db:BIDid:46815

Trust: 0.4

db:VULHUBid:VHN-48108

Trust: 0.1

db:PACKETSTORMid:99187

Trust: 0.1

db:PACKETSTORMid:99182

Trust: 0.1

sources: VULHUB: VHN-48108 // BID: 46815 // JVNDB: JVNDB-2011-001376 // PACKETSTORM: 99187 // PACKETSTORM: 99182 // CNNVD: CNNVD-201103-188 // NVD: CVE-2011-0163

REFERENCES

url:http://www.securitytracker.com/id?1025182

Trust: 1.9

url:http://support.apple.com/kb/ht4564

Trust: 1.8

url:http://support.apple.com/kb/ht4566

Trust: 1.8

url:http://lists.apple.com/archives/security-announce/2011//mar/msg00003.html

Trust: 1.7

url:http://lists.apple.com/archives/security-announce/2011//mar/msg00004.html

Trust: 1.7

url:https://exchange.xforce.ibmcloud.com/vulnerabilities/66001

Trust: 1.1

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2011-0163

Trust: 0.8

url:http://xforce.iss.net/xforce/xfdb/66001

Trust: 0.8

url:http://jvn.jp/cert/jvnvu867452

Trust: 0.8

url:http://jvn.jp/cert/jvnvu643615

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2011-0163

Trust: 0.8

url:http://secunia.com/advisories/43698

Trust: 0.6

url:http://secunia.com/advisories/43696

Trust: 0.6

url:http://www.apple.com/iphone/softwareupdate/

Trust: 0.3

url:http://secunia.com/products/corporate/evm/

Trust: 0.2

url:http://secunia.com/products/corporate/vim/section_179/

Trust: 0.2

url:http://secunia.com/advisories/secunia_security_advisories/

Trust: 0.2

url:http://secunia.com/vulnerability_scanning/corporate/wsus_sccm_3rd_third_party_patching/

Trust: 0.2

url:http://secunia.com/vulnerability_scanning/personal/

Trust: 0.2

url:http://secunia.com/sec_adv_unsubscribe/?email=packet%40packetstormsecurity.org

Trust: 0.2

url:http://secunia.com/advisories/about_secunia_advisories/

Trust: 0.2

url:http://secunia.com/advisories/43696/#comments

Trust: 0.1

url:https://ca.secunia.com/?page=viewadvisory&vuln_id=43696

Trust: 0.1

url:http://secunia.com/advisories/43696/

Trust: 0.1

url:http://secunia.com/advisories/43698/

Trust: 0.1

url:http://secunia.com/advisories/43698/#comments

Trust: 0.1

url:https://ca.secunia.com/?page=viewadvisory&vuln_id=43698

Trust: 0.1

sources: VULHUB: VHN-48108 // BID: 46815 // JVNDB: JVNDB-2011-001376 // PACKETSTORM: 99187 // PACKETSTORM: 99182 // CNNVD: CNNVD-201103-188 // NVD: CVE-2011-0163

CREDITS

Apple

Trust: 0.3

sources: BID: 46815

SOURCES

db:VULHUBid:VHN-48108
db:BIDid:46815
db:JVNDBid:JVNDB-2011-001376
db:PACKETSTORMid:99187
db:PACKETSTORMid:99182
db:CNNVDid:CNNVD-201103-188
db:NVDid:CVE-2011-0163

LAST UPDATE DATE

2025-04-11T20:41:59.474000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-48108date:2017-08-17T00:00:00
db:BIDid:46815date:2011-03-09T00:00:00
db:JVNDBid:JVNDB-2011-001376date:2011-04-07T00:00:00
db:CNNVDid:CNNVD-201103-188date:2011-03-14T00:00:00
db:NVDid:CVE-2011-0163date:2025-04-11T00:51:21.963

SOURCES RELEASE DATE

db:VULHUBid:VHN-48108date:2011-03-11T00:00:00
db:BIDid:46815date:2011-03-09T00:00:00
db:JVNDBid:JVNDB-2011-001376date:2011-04-07T00:00:00
db:PACKETSTORMid:99187date:2011-03-11T08:01:41
db:PACKETSTORMid:99182date:2011-03-11T08:01:28
db:CNNVDid:CNNVD-201103-188date:2011-03-14T00:00:00
db:NVDid:CVE-2011-0163date:2011-03-11T22:55:03.167