UBUNTU-CVE-2017-7090
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-7090
UBUNTU-CVE-2017-7090
Summary:
Details: An issue was discovered in certain Apple products. iOS before 11 is affected. Safari before 11 is affected. iCloud before 7.0 on Windows is affected. iTunes before 12.7 on Windows is affected. tvOS before 11 is affected. The issue involves the "WebKit" component. It allows remote attackers to bypass the Same Origin Policy and obtain sensitive cookie information via a custom URL scheme.
References: https://ubuntu.com/security/CVE-2017-7090, https://webkitgtk.org/security/WSA-2017-0008.html, https://ubuntu.com/security/notices/USN-3460-1, https://www.cve.org/CVERecord?id=CVE-2017-7090
Affected packages
Package
Name: webkit2gtk
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
