|
3271
|
-
6.8
|
MEDIUM
|
Use-after-free vulnerability in the Cascading Style Sheets (CSS) implementation in Google Chrome before 17.0.963.83 allows remote attackers to cause a denial of service or possibly have unspecified o…
|
CWE-416
Use After Free
|
CVE-2011-3050
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
6.0
|
2024-11-21 10:29
2012-03-23
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3272
|
-
10.0
|
HIGH
|
The extension subsystem in Google Chrome before 17.0.963.78 does not properly handle history navigation, which allows remote attackers to execute arbitrary code by leveraging a "Universal XSS (UXSS)"…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3046
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1.1
|
2024-11-21 10:29
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3273
|
-
9.3
|
HIGH
|
Format string vulnerability in VPN in Apple iOS before 5.1 allows remote attackers to execute arbitrary code via a crafted racoon configuration file.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2012-0646
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3274
|
-
1.2
|
LOW
|
Siri in Apple iOS before 5.1 does not properly restrict the ability of Mail.app to handle voice commands, which allows physically proximate attackers to bypass the locked state via a command that for…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0645
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3275
|
-
6.9
|
MEDIUM
|
Race condition in the Passcode Lock feature in Apple iOS before 5.1 allows physically proximate attackers to bypass intended passcode requirements via a slide-to-dial gesture.
|
CWE-362
Race Condition
|
CVE-2012-0644
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3276
|
-
9.3
|
HIGH
|
The kernel in Apple iOS before 5.1 does not properly handle debug system calls, which allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a crafted program.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0643
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3277
|
-
9.3
|
HIGH
|
Integer underflow in Apple iOS before 5.1 allows remote attackers to execute arbitrary code or cause a denial of service (device crash) via a crafted catalog file in an HFS disk image.
|
CWE-189
Numeric Errors
|
CVE-2012-0642
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3278
|
-
5.0
|
MEDIUM
|
CFNetwork in Apple iOS before 5.1 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL, a different vu…
|
CWE-20
Improper Input Validation
|
CVE-2012-0641
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3279
|
-
9.3
|
HIGH
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0635
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3280
|
-
9.3
|
HIGH
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0633
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
5.1
|
2024-11-21 10:35
2012-03-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|