|
3551
|
-
3.7
|
LOW
|
Race condition in the Passcode Lock feature in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.0 through 2.1 allows physically proximate attackers to remove the lock and launch arbitra…
|
CWE-362
Race Condition
|
CVE-2008-4229
|
cpe:2.3:o:apple:iphone_os:2.1:* cpe:2.3:o:apple:iphone_os:2.0:* cpe:2.3:o:apple:iphone_os:2.0.2:* cpe:2.3:o:ap…
|
|
|
|
|
2026-04-23 09:35
2008-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3552
|
-
3.6
|
LOW
|
The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows physically proximate attackers to leverage the emergency-call ability of locked device…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4228
|
cpe:2.3:o:apple:iphone_os:2.1:* cpe:2.3:o:apple:iphone_os:2.0:* cpe:2.3:o:apple:iphone_os:2.0.2:* cpe:2.3:o:ap…
|
|
|
|
|
2026-04-23 09:35
2008-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3553
|
-
7.5
|
HIGH
|
Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 changes the encryption level of PPTP VPN connections to a lower level than was previously used, which makes it easier for …
|
CWE-310
Cryptographic Issues
|
CVE-2008-4227
|
cpe:2.3:o:apple:iphone_os:2.1:* cpe:2.3:o:apple:iphone_os:2.0:* cpe:2.3:o:apple:iphone_os:2.0.2:* cpe:2.3:o:ap…
|
|
|
|
|
2026-04-23 09:35
2008-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3554
|
-
7.1
|
HIGH
|
ImageIO in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allow remote attackers to cause a denial of service (memory consumption and device reset) via a crafted TIFF im…
|
CWE-399
Resource Management Errors
|
CVE-2008-1586
|
cpe:2.3:o:apple:iphone_os:2.1:* cpe:2.3:o:apple:iphone_os:2.0:* cpe:2.3:o:apple:iphone_os:2.0.2:* cpe:2.3:o:ap…
|
|
|
|
|
2026-04-23 09:35
2008-11-26
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3555
|
-
10.0
|
HIGH
|
Integer signedness error in (1) QuickLook in Apple Mac OS X 10.5.5 and (2) Office Viewer in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows remote attackers to cau…
|
CWE-189
Numeric Errors
|
CVE-2008-4211
|
cpe:2.3:o:apple:iphone_os:2.1:- cpe:2.3:o:apple:iphone_os:2.0.2:- cpe:2.3:o:apple:iphone_os:2.0.1:- cpe:2.3:o:…
|
|
|
|
|
2026-04-23 09:35
2008-10-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3556
|
-
10.0
|
HIGH
|
Heap-based buffer overflow in the xmlParseAttValueComplex function in parser.c in libxml2 before 2.7.0 allows context-dependent attackers to cause a denial of service (crash) or execute arbitrary cod…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3529
|
cpe:2.3:o:apple:iphone_os:*:*
|
|
|
|
3.0
|
2026-04-23 09:35
2008-09-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3557
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in WebKit in Apple iPod touch 1.1 through 2.0.2, and iPhone 1.0 through 2.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (application…
|
CWE-399
Resource Management Errors
|
CVE-2008-3632
|
cpe:2.3:o:apple:iphone_os:1.1.2:* cpe:2.3:o:apple:iphone_os:1.1.1:*
|
|
|
|
|
2026-04-23 09:35
2008-09-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3558
|
9.8
7.5
|
CRITICAL
Network
|
The Networking subsystem in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, uses predictable TCP initial sequence numbers, which allows remote attackers to spoof or hijack a TCP con…
|
CWE-330
Use of Insufficiently Random Values
|
CVE-2008-3612
|
cpe:2.3:o:apple:iphone_os:*:*
|
2.0.0
|
2.0.2
|
|
|
2026-04-23 09:35
2008-09-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3559
|
6.5
4.3
|
MEDIUM
Network
|
libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU cons…
|
CWE-776
XML Entity Expansion
|
CVE-2008-3281
|
cpe:2.3:o:apple:iphone_os:*:*
|
1.0.0
|
|
|
3.0
|
2026-04-23 09:35
2008-08-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
3560
|
-
4.6
|
MEDIUM
|
Unspecified vulnerability in Passcode Lock in Apple iPhone 1.0 through 1.1.2 allows users with physical access to execute applications without entering the passcode via vectors related to emergency c…
|
NVD-CWE-Other
|
CVE-2008-0034
|
cpe:2.3:o:apple:iphone_os:1.1.2:* cpe:2.3:o:apple:iphone_os:1.1.1:* cpe:2.3:o:apple:iphone_os:1.0.2:* cpe:2.3:…
|
|
|
|
|
2026-04-23 09:35
2008-01-16
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|