Security Advisory

CVE-2011-3447

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2012-02-02 18:00:00
Last updated 2024-09-17 00:26:30
Assigner apple
State PUBLISHED

Description

CFNetwork in Apple Mac OS X 10.7.x before 10.7.3 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL.