(Apple Issues Fix for iPhone) Apple Safari May Load HTML 5 Media Elements Automatically
|
|
SecurityTracker Alert ID: 1023538 |
|
SecurityTracker URL: http://securitytracker.com/id/1023538
|
|
CVE Reference:
CVE-2009-2841
(Links to External Site)
|
Date: Feb 3 2010
|
Impact:
Disclosure of user information
|
Fix Available: Yes Vendor Confirmed: Yes
|
Version(s): 1.0 through 3.1.2
|
Description:
A vulnerability was reported in Apple Safari. A remote user can cause remote audio and video resources to be loaded by the target user's browser. Apple iPhone is affected.
A remote user can create a specially crafted HTML 5 Media Element that, when loaded by the target user, will load the resource. This allows the remote user to, for example, determine if an e-mail has been viewed.
The vulnerability resides in WebKit.
Windows-based system sare not affected.
|
Impact:
A remote user can cause remote audio and video resources to be loaded by the target user's browser.
|
Solution:
Apple has issued fix for iPhone (3.1.3 (7E18)).
The vendor's advisory is available at:
http://support.apple.com/kb/HT4013
|
Cause:
Access control error
|
Underlying OS:
|
|
Message History:
This archive entry is a follow-up to the message listed below.
|
Source Message Contents
|
Date: Wed, 03 Feb 2010 06:59:46 +0000
Subject: Apple iPhone
|
APPLE-SA-2010-02-02-1 iPhone OS 3.1.3 and iPhone OS 3.1.3 for iPod touch
WebKit
CVE-ID: CVE-2009-2841
Available for: iPhone OS 1.0 through 3.1.2,
iPhone OS for iPod touch 1.1 through 3.1.2
Impact: Mail may load remote audio and video content when remote
image loading is disabled
Description: When WebKit encounters an HTML 5 Media Element pointing
to an external resource, it does not issue a resource load callback
to determine if the resource should be loaded. This may result in
undesired requests to remote servers. As an example, the sender of an
HTML-formatted email message could use this to determine that the
message was read. This issue is addressed by generating resource load
callbacks when WebKit encounters an HTML 5 Media Element.
|
|