漏洞信息详情
CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple GarageBand信息泄露漏洞
- CNNVD编号:CNNVD-200908-506
- 危害等级: 中危
- CVE编号: CVE-2009-2198
- 漏洞类型: 权限许可和访问控制
- 发布时间: 2009-08-04
- 威胁类型: 远程
- 更新时间: 2009-08-18
- 厂 商: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
- 漏洞来源: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple
漏洞简介
CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple GarageBand是是美国苹果(CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple)公司的一套音乐制作软件。 CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple GarageBand存在信息泄露漏洞。在打开GarageBand时,会将Safari的偏好更改为总是接受Cookie,而默认的偏好是仅接受所访问站点的Cookie。更改后的设置可能允许第三方或广告主追踪用户的行为。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载: http://www.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com
参考网址
来源: VUPEN 名称: ADV-2009-2141 链接:http://www.vupen.com/english/advisories/2009/2141 来源: BID 名称: 35926 链接:http://www.securityfocus.com/bid/35926 来源: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple 名称: CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple-SA-2009-08-03-1 链接:http://lists.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/archives/security-announce/2009/Aug/msg00000.HTML 来源: XF 名称: garageband-safari-info-disclosure(52248) 链接:http://xforce.iss.net/xforce/xfdb/52248 来源: SECTRACK 名称: 1022649 链接:http://www.securitytracker.com/id?1022649 来源: support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com 链接:http://support.CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple.com/kb/HT3732 来源: SECUNIA 名称: 36114 链接:http://secunia.com/advisories/36114 来源: OSVDB 名称: 56738 链接:http://osvdb.org/56738
受影响实体
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Garageband:4.1.1
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Garageband:4.1.2
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Garageband:5.0.1
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Garageband:5.0.2
- CMS.zone.ci/e/tags/htag.php?tag=Apple target=_blank class=infotextkey>Apple Garageband:5.0
补丁
暂无
评论