|
197711
|
8.1 |
HIGH
Network
|
arm
|
mbed_tls
|
ARM mbed TLS before 1.3.21 and 2.x before 2.1.9, if optional authentication is configured, allows remote attackers to bypass peer authentication via an X.509 certificate chain with many intermediates…
|
CWE-287
Improper Authentication
|
CVE-2017-14032
|
2024-11-21 12:12 |
2017-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197712
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
An access issue was addressed with additional sandbox restrictions on applications. This issue is fixed in macOS High Sierra 10.13. An application may be able to access restricted files.
|
NVD-CWE-noinfo
|
CVE-2017-13910
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197713
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
An issue existed in the storage of sensitive tokens. This issue was addressed by placing the tokens in Keychain. This issue is fixed in macOS High Sierra 10.13. A local attacker may gain access to iC…
|
CWE-922
Insecure Storage of Sensitive Information
|
CVE-2017-13909
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197714
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
An issue in handling file permissions was addressed with improved validation. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El Capita…
|
NVD-CWE-noinfo
|
CVE-2017-13908
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197715
|
6.8 |
MEDIUM
Physics
|
apple
|
mac_os_x
|
A state management issue was addressed with improved state validation. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El Capitan. The …
|
NVD-CWE-noinfo
|
CVE-2017-13907
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197716
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS High Sierra 10.13.1, Security Update 2017-001 Sierra, and Security Update 2017-004 El Capitan, macO…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-13906
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197717
|
8.1 |
HIGH
Network
|
apple
|
mac_os_x iphone_os watchos tvos macos
|
A race condition was addressed with additional validation. This issue is fixed in tvOS 11.2, iOS 11.2, macOS High Sierra 10.13.2, Security Update 2017-002 Sierra, and Security Update 2017-005 El Capi…
|
CWE-362
Race Condition
|
CVE-2017-13905
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197718
|
7.5 |
HIGH
Network
|
apple
|
mac_os_x macos
|
An issue existed in the handling of Contact sharing. This issue was addressed with improved handling of user information. This issue is fixed in macOS High Sierra 10.13.2, Security Update 2017-002 Si…
|
NVD-CWE-noinfo
|
CVE-2017-13892
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197719
|
7.8 |
HIGH
Local
|
apple
|
iphone_os watchos
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in iOS 11.2, watchOS 4.2. An application may be able to execute arbitrary code with kernel privilege.
|
NVD-CWE-noinfo
|
CVE-2017-13880
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197720
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
A memory corruption issue was addressed with improved memory handling. This issue is fixed in macOS High Sierra 10.13. An application may be able to execute arbitrary code with elevated privileges.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-13835
|
2024-11-21 12:11 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|