|
2531
|
7.8
9.3
|
HIGH
Local
|
IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (me…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4726
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
10.0
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2532
|
8.1
5.8
|
HIGH
Network
|
IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to obtain sensitive information from process memory or cause a denial of se…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4725
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
10.0
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2533
|
7.8
9.3
|
HIGH
Local
|
IOAcceleratorFamily in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a craft…
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-4724
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.3.5
|
|
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2534
|
5.9
7.1
|
MEDIUM
Network
|
The IDS - Connectivity component in Apple iOS before 10 and OS X before 10.12 allows man-in-the-middle attackers to conduct Call Relay spoofing attacks and cause a denial of service via unspecified v…
|
CWE-20
Improper Input Validation
|
CVE-2016-4722
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.3.5
|
|
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2535
|
6.5
4.3
|
MEDIUM
Network
|
Buffer overflow in FontParser in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to obtain sensitive information from process memory via a crafted…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4718
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
10.0
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2536
|
7.8
9.3
|
HIGH
Local
|
CoreCrypto in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via a crafted …
|
CWE-787
Out-of-bounds Write
|
CVE-2016-4712
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
10.0
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2537
|
7.5
5.0
|
HIGH
Network
|
CCrypt in corecrypto in CommonCrypto in Apple iOS before 10 and OS X before 10.12 allows attackers to discover cleartext information by leveraging a function call that specifies the same buffer for i…
|
CWE-200 CWE-20
Information Exposure Improper Input Validation
|
CVE-2016-4711
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.3.5
|
|
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2538
|
6.5
4.3
|
MEDIUM
Network
|
CFNetwork in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 misparses the Set-Cookie header, which allows remote attackers to obtain sensitive information via a crafted …
|
CWE-200
Information Exposure
|
CVE-2016-4708
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
10.0
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2539
|
4.0
2.1
|
MEDIUM
Local
|
CFNetwork in Apple iOS before 10 and OS X before 10.12 mishandles Local Storage deletion, which allows local users to discover the visited web sites of arbitrary users via unspecified vectors.
|
CWE-200 CWE-19
Information Exposure Data Processing Errors
|
CVE-2016-4707
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.3.5
|
|
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2540
|
9.8
10.0
|
CRITICAL
Network
|
Audio in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecifie…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4702
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
10.0
|
2024-11-21 11:52
2016-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|