|
3461
|
-
6.8
|
MEDIUM
|
Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service…
|
CWE-399
Resource Management Errors
|
CVE-2010-1812
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.1
|
2024-11-21 10:15
2010-09-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3462
|
-
6.8
|
MEDIUM
|
ImageIO in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted TIF…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1811
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.1
|
2024-11-21 10:15
2010-09-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3463
|
-
3.5
|
LOW
|
FaceTime in Apple iOS before 4.1 on the iPhone and iPod touch does not properly handle invalid X.509 certificates, which allows man-in-the-middle attackers to redirect calls via a crafted certificate.
|
NVD-CWE-Other
|
CVE-2010-1810
|
cpe:2.3:o:apple:iphone_os:4.0:* cpe:2.3:o:apple:iphone_os:4.0.1:* cpe:2.3:o:apple:iphone_os:3.2:* cpe:2.3:o:ap…
|
|
4.0.2
|
|
|
2024-11-21 10:15
2010-09-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3464
|
-
10.0
|
HIGH
|
The Accessibility component in Apple iOS before 4.1 on the iPhone and iPod touch does not perform the expected VoiceOver announcement associated with the location services icon, which has unspecified…
|
NVD-CWE-noinfo
|
CVE-2010-1809
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.1
|
2024-11-21 10:15
2010-09-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3465
|
-
6.8
|
MEDIUM
|
Double free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors…
|
CWE-399
Resource Management Errors
|
CVE-2010-1781
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.1
|
2024-11-21 10:15
2010-09-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3466
|
-
4.3
|
MEDIUM
|
WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS …
|
CWE-200
Information Exposure
|
CVE-2010-3259
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.2
|
2024-11-21 10:18
2010-09-8
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3467
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, allows remote attackers to execute ar…
|
CWE-416
Use After Free
|
CVE-2010-3257
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.2
|
2024-11-21 10:18
2010-09-8
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3468
|
-
10.0
|
HIGH
|
Multiple use-after-free vulnerabilities in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, allow remote attackers to…
|
CWE-416
Use After Free
|
CVE-2010-3116
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.2
|
2024-11-21 10:18
2010-08-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3469
|
-
6.8
|
MEDIUM
|
Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or poss…
|
CWE-120
Classic Buffer Overflow
|
CVE-2010-2808
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.2
|
2024-11-21 10:17
2010-08-20
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3470
|
-
6.8
|
MEDIUM
|
FreeType before 2.4.2 uses incorrect integer data types during bounds checking, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a…
|
CWE-681
Incorrect Conversion between Numeric Types
|
CVE-2010-2807
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
4.2
|
2024-11-21 10:17
2010-08-20
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|