Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1580 (Safari)

BugsAlert Home > CVE-2008-1580 (Safari)
 
 

CFNetwork in Safari in Apple Mac OS X before 10.5.3 automatically sends an SSL client certificate in response to a web server's certificate request, which allows remote web sites to obtain sensitive information (Subject data) from personally identifiable certificates, and use arbitrary certificates to track user activities across domains, a related issue to CVE-2007-4879.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1580

Learn more about CVE-2008-1580 (Safari)
 
Tags: cve-2008-1580 safari

Related Items

      WOW Raid Manager "auth_phpbb3.php" Authentication Bypass

      FrSIRT - Redhat Security Update Fixes xorg-x11 Privilege Escalation Issues

      CVE-2008-3144 (Python)

      FrSIRT - Linux Kernel ASN.1 BER Decoding Remote Buffer Overflow Vulnerability

      PHPauction GPL "include_path" File Inclusion Vulnerabilities

      Debian update for gnome-peercast

      BluePage CMS Multiple Cross-Site Scripting Vulnerabilities

 

Pixel