|
2651
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to cause a denial of service via a crafted app, a different vulnerability than CVE-20…
|
NVD-CWE-noinfo
|
CVE-2015-7041
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2652
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to cause a denial of service via a crafted app, a different vulnerability than CVE-20…
|
NVD-CWE-noinfo
|
CVE-2015-7040
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2653
|
-
6.8
|
MEDIUM
|
Buffer overflow in libc in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code via a crafted package, a different vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7039
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2654
|
-
6.8
|
MEDIUM
|
Buffer overflow in libc in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code via a crafted package, a different vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7038
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2655
|
-
5.0
|
MEDIUM
|
Directory traversal vulnerability in Mobile Backup in Photos in Apple iOS before 9.2 allows attackers to read arbitrary files via a crafted pathname.
|
CWE-22
Path Traversal
|
CVE-2015-7037
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2656
|
-
6.8
|
MEDIUM
|
AppSandbox in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 mishandles hard links, which allows attackers to bypass Contacts access revocation via a crafted app.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7001
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.1
|
|
|
2024-11-21 11:36
2015-12-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2657
|
-
7.5
|
HIGH
|
The fts3_tokenizer function in SQLite, as used in Apple iOS before 8.4 and OS X before 10.10.4, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via …
|
CWE-20
Improper Input Validation
|
CVE-2015-7036
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
8.3
|
|
|
2024-11-21 11:36
2015-11-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2658
|
-
4.3
|
MEDIUM
|
The CFNetwork HTTPProtocol component in Apple iOS before 9 and OS X before 10.11 does not properly recognize the HSTS preload list during a Safari private-browsing session, which makes it easier for …
|
CWE-200
Information Exposure
|
CVE-2015-5859
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
8.4.1
|
|
|
2024-11-21 11:34
2015-11-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2659
|
-
4.3
|
MEDIUM
|
The kernel in Apple iOS before 8.4.1 does not properly restrict debugging features, which allows attackers to bypass background-execution limitations via a crafted app.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-5787
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
8.4
|
|
|
2024-11-21 11:33
2015-11-22
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2660
|
-
2.6
|
LOW
|
The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML da…
|
CWE-399
Resource Management Errors
|
CVE-2015-8035
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
9.2.1
|
|
|
2024-11-21 11:37
2015-11-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|