The History implementation in WebKit in Apple iOS before 9.3, Safari before 9.1, and tvOS before 9.2 allows remote attackers to cause a denial of service (resource consumption and application crash) via a crafted web site.
The product does not properly control the allocation and maintenance of a limited resource.
Link | Tags |
---|---|
http://lists.apple.com/archives/security-announce/2016/Mar/msg00005.html | mailing list vendor advisory |
http://www.securitytracker.com/id/1035353 | vdb entry third party advisory |
http://lists.apple.com/archives/security-announce/2016/Mar/msg00000.html | mailing list vendor advisory |
https://support.apple.com/HT206171 | vendor advisory |
http://lists.apple.com/archives/security-announce/2016/Mar/msg00002.html | mailing list vendor advisory |
https://support.apple.com/HT206169 | vendor advisory |
https://support.apple.com/HT206166 | vendor advisory |