The issue was addressed through improved data deletion. Impact: A user may be unable to fully delete browsing historyĭescription: Clearing Safari's history did not clear saved HTTP Strict Transport Security state. The issue was address through improved handling of redirects. Cookies set in a redirect response could be passed on to a redirect target belonging to another origin. Impact: Cookies belonging to one origin may be sent to another originĭescription: A cross-domain cookie issue existed in redirect handling. The complete list of certificates may be viewed at Impact: Update to the certificate trust policyĭescription: The certificate trust policy was updated. This issues was addressed through improved path evaluation. Impact: An attacker may be able to use the backup system to access restricted areas of the file systemĭescription: An issue existed in the relative path evaluation logic of the backup system. This issue was addressed through improved validation of metadata. Impact: A malicious application may be able to execute arbitrary code with system privilegesĭescription: A validation issue existed in IOKit objects used by an audio driver. This issue was addressed with improved entitlement checking. Impact: A malicious application may be able to guess the user's passcodeĭescription: iOS allowed access to an interface which allowed attempts to confirm the user's passcode. Available for: iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |