Summary
This host is installed with Apple Safari and is prone to multiple vulnerabilities.
Impact
Successful exploitation will allow attackers to bypass a sandbox protection mechanism, execute arbitrary code with root privileges via unknown vectors and corrupt memory.
Impact Level: System/Application
Solution
Upgrade to Apple Safari version 6.1.6 or 7.0.6 or later, For updates refer to 'http://www.apple.com/support'
Insight
Flaws are due to muliple unspecified errors in the WebKit
Affected
Apple Safari version before 6.1.6 and 7.x before 7.0.6 on Mac OS X
Detection
Get the installed version with the help of detect NVT and check the version is vulnerable or not.
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2014-1384, CVE-2014-1385, CVE-2014-1386, CVE-2014-1387, CVE-2014-1388, CVE-2014-1389, CVE-2014-1390 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Apple Safari 'Webkit' Multiple Vulnerabilities-01 Mar14 (Mac OS X)
- Asterisk SIP Response Username Enumeration Remote Information Disclosure Vulnerability
- Active Perl CGI.pm 'Set-Cookie' and 'P3P' HTTP Header Injection Vulnerability (Win)
- Apple Mac OS X Denial of Service Vulnerability
- Adobe Reader Multiple Unspecified Vulnerabilities Jun06 (Mac OS X)