CVE-2016-1156
Published on: 02/19/2016 12:00:00 AM UTC
Last Modified on: 03/23/2021 11:27:04 PM UTC
Certain versions of Mac Os X from Apple contain the following vulnerability:
LINE 4.3.0.724 and earlier on Windows and 4.3.1 and earlier on OS X allows remote authenticated users to cause a denial of service (application crash) via a crafted post that is mishandled when displaying a Timeline.
- CVE-2016-1156 has been assigned by
[email protected] to track the vulnerability - currently rated as MEDIUM severity.
CVSS3 Score: 5.7 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
|
---|---|---|---|---|
NETWORK | LOW | LOW | REQUIRED | |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
|
UNCHANGED | NONE | NONE | HIGH |
CVSS2 Score: 3.5 - LOW
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | MEDIUM | SINGLE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
NONE | NONE | PARTIAL |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
No Description Provided | Vendor Advisory jvndb.jvn.jp text/html |
![]() |
JVN#46044093: LINE for Windows and LINE for Mac OS vulnerable to denial-of-service (DoS) | Vendor Advisory jvn.jp text/xml |
![]() |
LINE Corporation | Vendor Advisory linecorp.com text/html |
![]() |
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Operating System | Apple | Mac Os X | All | All | All | All |
Operating System | Apple | Mac Os X | All | All | All | All |
Application | Linecorp | Line | All | All | All | All |
Application | Linecorp | Line | All | All | All | All |
Operating System | Microsoft | Windows | All | All | All | All |
Operating System | Microsoft | Windows | All | All | All | All |
- cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*:
- cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*:
- cpe:2.3:a:linecorp:line:*:*:*:*:*:windows:*:*:
- cpe:2.3:a:linecorp:line:*:*:*:*:*:macos:*:*:
- cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*:
- cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE