CVE-2012-0647

NameCVE-2012-0647
DescriptionWebKit in Apple Safari before 5.1.4 does not properly handle redirects in conjunction with HTTP authentication, which might allow remote web servers to capture credentials by logging the Authorization HTTP header.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Notes

NOT-FOR-US: Apple Safari/ if anything of this affects Chromium, the Chrome sec team will know and fix

Search for package or bug name: Reporting problems