An issue existed in the parsing of URL schemes. This issue was addressed with improved URL validation. This issue is fixed in Shazam Android App Version 9.25.0, Shazam iOS App Version 12.11.0. Processing a maliciously crafted URL may lead to an open redirect.
References
Link Resource
https://support.apple.com/HT210744 Vendor Advisory
https://support.apple.com/HT210745 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2019-12-18T17:33:23

Updated: 2019-12-18T17:33:23

Reserved: 2019-02-18T00:00:00


Link: CVE-2019-8791

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-12-18T18:15:41.647

Modified: 2020-01-02T19:00:12.870


Link: CVE-2019-8791

JSON object: View

cve-icon Redhat Information

No data.

CWE