CVE-2016-4590

Priority
Description
WebKit in Apple iOS before 9.3.3 and Safari before 9.1.2 mishandles about:
URLs, which allows remote attackers to bypass the Same Origin Policy via a
crafted web site.
Notes
jdstrandwebkit receives limited support. For details, see
https://wiki.ubuntu.com/SecurityTeam/FAQ#webkit
webkit in Ubuntu uses the JavaScriptCore (JSC) engine, not V8
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was ignored [no update available])
Ubuntu 16.04 LTS (Xenial Xerus):ignored (no update available)
Patches:
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was ignored [no update available])
Ubuntu 16.04 LTS (Xenial Xerus):ignored (no update available)
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):DNE
Package
Upstream:released (2.12.4)
Ubuntu 14.04 ESM (Trusty Tahr):DNE
Ubuntu 16.04 LTS (Xenial Xerus):released (2.12.5-0ubuntu0.16.04.1)
Package
Upstream:needs-triage
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was ignored [no update available])
Ubuntu 16.04 LTS (Xenial Xerus):ignored (no update available)
More Information

Updated: 2020-01-29 19:55:46 UTC (commit 768ceb2fdee6790d707d0f681e1b54916744af1e)