|
267931
|
- |
|
apple
|
iphone_os mac_os_x
|
The kernel in Apple iOS before 9.1 and OS X before 10.11.1 does not initialize an unspecified data structure, which allows remote attackers to execute arbitrary code via vectors involving an unknown …
|
NVD-CWE-noinfo
|
CVE-2015-6988
|
2024-11-21 11:36 |
2015-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267932
|
- |
|
apple
|
mac_os_x
|
Apple Mac EFI before 2015-002, as used in OS X before 10.11.1 and other products, mishandles arguments, which allows attackers to reach "unused" functions via unspecified vectors.
|
CWE-17
Code
|
CVE-2015-7035
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267933
|
- |
|
apple
|
mac_os_x_server
|
The Web Service component in Apple OS X Server before 5.0.15 omits an unspecified HTTP header configuration, which allows remote attackers to bypass intended access restrictions via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7031
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267934
|
- |
|
apple
|
xcode
|
The Swift implementation in Apple Xcode before 7.1 mishandles type conversion, which has unspecified impact and attack vectors.
|
CWE-17
Code
|
CVE-2015-7030
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267935
|
- |
|
apple
|
iphone_os
|
The Telephony subsystem in Apple iOS before 9.1 allows attackers to obtain sensitive call-status information via a crafted app.
|
CWE-200
Information Exposure
|
CVE-2015-7022
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267936
|
- |
|
apple
|
mac_os_x iphone_os itunes
|
CoreText in Apple iOS before 9.1, OS X before 10.11.1, and iTunes before 12.3.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font f…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7017
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267937
|
- |
|
apple
|
iphone_os
|
WebKit, as used in Apple iOS before 9.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different v…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7005
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267938
|
- |
|
apple
|
iphone_os
|
The kernel in Apple iOS before 9.1 allows attackers to cause a denial of service via a crafted app.
|
CWE-20
Improper Input Validation
|
CVE-2015-7004
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267939
|
- |
|
apple
|
iphone_os
|
Notification Center in Apple iOS before 9.1 mishandles changes to "Show on Lock Screen" settings, which allows physically proximate attackers to obtain sensitive information by looking for a (1) Phon…
|
CWE-200
Information Exposure
|
CVE-2015-7000
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267940
|
- |
|
apple
|
iphone_os
|
The OCSP client in Apple iOS before 9.1 does not check for certificate expiry, which allows remote attackers to spoof a valid certificate by leveraging access to a revoked certificate.
|
CWE-254
7PK - Security Features
|
CVE-2015-6999
|
2024-11-21 11:36 |
2015-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|