|
265731
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
Audio in Apple OS X before 10.11.6 allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors.
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-4649
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265732
|
5.5 |
MEDIUM
Local
|
apple
|
mac_os_x
|
Audio in Apple OS X before 10.11.6 allows local users to obtain sensitive kernel memory-layout information or cause a denial of service (out-of-bounds read) via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-4648
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265733
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
Audio in Apple OS X before 10.11.6 allows local users to gain privileges or cause a denial of service (memory corruption) via a crafted file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4647
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265734
|
6.5 |
MEDIUM
Network
|
apple
|
mac_os_x
|
Audio in Apple OS X before 10.11.6 mishandles a size value, which allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read) via a crafted audio file.
|
CWE-200
Information Exposure
|
CVE-2016-4646
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265735
|
3.3 |
LOW
Local
|
apple
|
mac_os_x
|
CFNetwork in Apple OS X before 10.11.6 uses weak permissions for web-browser cookies, which allows local users to obtain sensitive information via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2016-4645
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265736
|
7.3 |
HIGH
Local
|
apple
|
mac_os_x
|
Login Window in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context or obtain sensitive user information via a crafted app that leverages a "type confusion."
|
CWE-20
Improper Input Validation
|
CVE-2016-4641
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265737
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
Login Window in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context, obtain sensitive user information, or cause a denial of service (memory corruption) via a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4640
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265738
|
7.0 |
HIGH
Local
|
apple
|
mac_os_x
|
Login Window in Apple OS X before 10.11.6 does not properly initialize memory, which allows local users to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2016-4639
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265739
|
7.8 |
HIGH
Local
|
apple
|
mac_os_x
|
Login Window in Apple OS X before 10.11.6 allows attackers to gain privileges via a crafted app that leverages a "type confusion."
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-4638
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265740
|
8.8 |
HIGH
Network
|
apple
|
iphone_os tvos mac_os_x watchos
|
CoreGraphics in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-4637
|
2024-11-21 11:52 |
2016-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|