|
2671
|
-
7.2
|
HIGH
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows local users to gain privileges via a crafted mach message that is misparsed.
|
CWE-20
Improper Input Validation
|
CVE-2015-7047
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2672
|
-
2.6
|
LOW
|
The Sandbox feature in xnu in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 does not properly implement privilege separation, which allows attackers to bypass the…
|
CWE-200
Information Exposure
|
CVE-2015-7046
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2673
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to cause a denial of service via a crafted app, a different vulnerability than CVE-20…
|
NVD-CWE-noinfo
|
CVE-2015-7043
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2674
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to cause a denial of service via a crafted app, a different vulnerability than CVE-20…
|
NVD-CWE-noinfo
|
CVE-2015-7042
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2675
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to cause a denial of service via a crafted app, a different vulnerability than CVE-20…
|
NVD-CWE-noinfo
|
CVE-2015-7041
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2676
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to cause a denial of service via a crafted app, a different vulnerability than CVE-20…
|
NVD-CWE-noinfo
|
CVE-2015-7040
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2677
|
-
6.8
|
MEDIUM
|
Buffer overflow in libc in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code via a crafted package, a different vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7039
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2678
|
-
6.8
|
MEDIUM
|
Buffer overflow in libc in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code via a crafted package, a different vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7038
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2679
|
-
5.0
|
MEDIUM
|
Directory traversal vulnerability in Mobile Backup in Photos in Apple iOS before 9.2 allows attackers to read arbitrary files via a crafted pathname.
|
CWE-22
Path Traversal
|
CVE-2015-7037
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2680
|
-
6.8
|
MEDIUM
|
AppSandbox in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 mishandles hard links, which allows attackers to bypass Contacts access revocation via a crafted app.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7001
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|