|
3361
|
-
7.5
|
HIGH
|
Heap-based buffer overflow in libxml2, as used in Google Chrome before 16.0.912.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
|
CWE-787
Out-of-bounds Write
|
CVE-2011-3919
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
6.0
|
2024-11-21 10:31
2012-01-7
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3362
|
-
7.5
|
HIGH
|
Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to Range handling.
|
CWE-416
Use After Free
|
CVE-2011-3913
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
6.0
|
2024-11-21 10:31
2011-12-14
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3363
|
-
5.0
|
MEDIUM
|
The Cascading Style Sheets (CSS) implementation in Google Chrome before 16.0.912.63 on 64-bit platforms does not properly manage property arrays, which allows remote attackers to cause a denial of se…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-3909
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:31
2011-12-14
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3364
|
-
5.0
|
MEDIUM
|
Google Chrome before 16.0.912.63 does not properly parse SVG documents, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.
|
CWE-125
Out-of-bounds Read
|
CVE-2011-3908
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:31
2011-12-14
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3365
|
-
7.2
|
HIGH
|
The kernel in Apple iOS before 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute arbitrary unsigned code via a crafted app.
|
CWE-399
Resource Management Errors
|
CVE-2011-3442
|
cpe:2.3:o:apple:iphone_os:5.0:- cpe:2.3:o:apple:iphone_os:5.0:- cpe:2.3:o:apple:iphone_os:5.0:- cpe:2.3:o:appl…
|
|
|
|
|
2024-11-21 10:30
2011-11-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3366
|
-
4.3
|
MEDIUM
|
libinfo in Apple iOS before 5.0.1 does not properly formulate domain-name queries, which allows remote attackers to obtain sensitive information via a crafted DNS hostname.
|
CWE-200
Information Exposure
|
CVE-2011-3441
|
cpe:2.3:o:apple:iphone_os:5.0:- cpe:2.3:o:apple:iphone_os:5.0:- cpe:2.3:o:apple:iphone_os:5.0:- cpe:2.3:o:appl…
|
|
5.0
|
|
|
2024-11-21 10:30
2011-11-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3367
|
-
1.2
|
LOW
|
The Passcode Lock feature in Apple iOS before 5.0.1 on the iPad 2 does not properly implement the locked state, which allows physically proximate attackers to access data by opening a Smart Cover dur…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-3440
|
cpe:2.3:o:apple:iphone_os:4.3.5:* cpe:2.3:o:apple:iphone_os:4.3.4:* cpe:2.3:o:apple:iphone_os:4.3.3:* cpe:2.3:…
|
|
5.0
|
|
|
2024-11-21 10:30
2011-11-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3368
|
-
9.3
|
HIGH
|
FreeType in CoreGraphics in Apple iOS before 5.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a document.
|
CWE-787
Out-of-bounds Write
|
CVE-2011-3439
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.0.1
|
2024-11-21 10:30
2011-11-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3369
|
-
6.8
|
MEDIUM
|
Use-after-free vulnerability in Google Chrome before 15.0.874.120 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to e…
|
CWE-416
Use After Free
|
CVE-2011-3897
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:31
2011-11-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3370
|
-
6.8
|
MEDIUM
|
Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to e…
|
CWE-416
Use After Free
|
CVE-2011-3888
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:31
2011-10-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|