|
270921
|
- |
|
apple
|
mac_os_x
|
systemstatsd in the System Stats subsystem in Apple OS X before 10.10.4 does not properly interpret data types encountered in interprocess communication, which allows attackers to execute arbitrary c…
|
NVD-CWE-Other
|
CVE-2015-3718
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270922
|
- |
|
sqlite apple
|
sqlite mac_os_x iphone_os
|
Multiple buffer overflows in the printf functionality in SQLite, as used in Apple iOS before 8.4 and OS X before 10.10.4, allow remote attackers to execute arbitrary code or cause a denial of service…
|
CWE-120
Classic Buffer Overflow
|
CVE-2015-3717
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270923
|
- |
|
apple
|
mac_os_x
|
Spotlight in Apple OS X before 10.10.4 allows attackers to execute arbitrary commands via a crafted name of a photo file within the local photo library.
|
CWE-77
Command Injection
|
CVE-2015-3716
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270924
|
- |
|
apple
|
mac_os_x
|
The code-signing implementation in Apple OS X before 10.10.4 does not properly consider libraries that are external to an application bundle, which allows attackers to bypass intended launch restrict…
|
CWE-254
7PK - Security Features
|
CVE-2015-3715
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270925
|
- |
|
apple
|
mac_os_x
|
Apple OS X before 10.10.4 does not properly consider custom resource rules during app signature verification, which allows attackers to bypass intended launch restrictions via a modified app.
|
CWE-254
7PK - Security Features
|
CVE-2015-3714
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270926
|
- |
|
apple
|
mac_os_x quicktime
|
QuickTime in Apple OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted movie file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3713
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270927
|
- |
|
apple
|
mac_os_x
|
The NVIDIA graphics driver in Apple OS X before 10.10.4 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (out-of-bounds write) via a crafted app.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3712
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270928
|
- |
|
apple
|
mac_os_x
|
The NTFS implementation in Apple OS X before 10.10.4 allows attackers to obtain sensitive memory-layout information for the kernel via a crafted app.
|
CWE-200
Information Exposure
|
CVE-2015-3711
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270929
|
- |
|
apple
|
iphone_os mac_os_x
|
Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to trigger a refresh operation, and consequently cause a visit to an arbitrary web site, via a crafted HTML e-mail message.
|
CWE-254
7PK - Security Features
|
CVE-2015-3710
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270930
|
- |
|
apple
|
mac_os_x
|
Race condition in kext tools in Apple OS X before 10.10.4 allows local users to bypass intended signature requirements for kernel extensions by leveraging improper pathname validation.
|
CWE-362
Race Condition
|
CVE-2015-3709
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|