Vulnerabilities / Threats
7/23/2008
08:38 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Apple's iPhone Mail, Safari Apps Vulnerable To Attack

Apple's iPhone Mail and Safari apps under the iPhone 1.1.4 and 2.0 firmware are vulnerable to URL spoofing, a security researcher said Wednesday.

Apple's iPhone Mail and Safari applications are vulnerable to URL spoofing, security researcher Aviv Raff said on Wednesday.

"By creating a specially crafted URL, and sending it via an e-mail, an attacker can convince the user that the spoofed URL, showed in the mail application, is from a trusted domain...," Raff explained in a blog post. "When clicking on the URL, the Safari browser will be opened. The spoofed URL, [shown] in the address bar of the Safari browser, will still be viewed by the victim as if it is of a trusted domain."

Apple's iPhone Mail and Safari applications under the iPhone 1.1.4 and 2.0 firmware are affected. Earlier versions may be affected, too.

Raff said he plans to withhold technical details until Apple issues a fix for the flaw. He said that Apple has acknowledged the Mail vulnerability and is investigating the Safari issue.

Raff recommended that users not click on links to get to trusted sites, like online banks. Rather they should type URLs in manually until the problem is resolved.

Raff observeed that in addition to being vulnerable to phishing, iPhone users are also vulnerable to being spammed. "IPhone users should consider [not] using the Mail application until Apple fixes this issue, unless they want to be spammed," he said.

Earlier this month, Raff criticized Apple for failing to learn from past browser design mistakes.

Apple has patched 20 Safari vulnerabilities so far this year.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Flash Poll
Current Issue
Cartoon
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-3341
Published: 2014-08-19
The SNMP module in Cisco NX-OS 7.0(3)N1(1) and earlier on Nexus 5000 and 6000 devices provides different error messages for invalid requests depending on whether the VLAN ID exists, which allows remote attackers to enumerate VLANs via a series of requests, aka Bug ID CSCup85616.

CVE-2014-3464
Published: 2014-08-19
The EJB invocation handler implementation in Red Hat JBossWS, as used in JBoss Enterprise Application Platform (EAP) 6.2.0 and 6.3.0, does not properly enforce the method level restrictions for outbound messages, which allows remote authenticated users to access otherwise restricted JAX-WS handlers ...

CVE-2014-3472
Published: 2014-08-19
The isCallerInRole function in SimpleSecurityManager in JBoss Application Server (AS) 7, as used in Red Hat JBoss Enterprise Application Platform (JBEAP) 6.3.0, does not properly check caller roles, which allows remote authenticated users to bypass access restrictions via unspecified vectors.

CVE-2014-3490
Published: 2014-08-19
RESTEasy 2.3.1 before 2.3.8.SP2 and 3.x before 3.0.9, as used in Red Hat JBoss Enterprise Application Platform (EAP) 6.3.0, does not disable external entities when the resteasy.document.expand.entity.references parameter is set to false, which allows remote attackers to read arbitrary files and have...

CVE-2014-3504
Published: 2014-08-19
The (1) serf_ssl_cert_issuer, (2) serf_ssl_cert_subject, and (3) serf_ssl_cert_certificate functions in Serf 0.2.0 through 1.3.x before 1.3.7 does not properly handle a NUL byte in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers...

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Dark Reading continuing coverage of the Black Hat 2014 conference brings interviews and commentary to Dark Reading listeners.