|
278141
|
- |
|
apple
|
mac_os_x
|
The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option R…
|
CWE-17
Code
|
CVE-2014-4498
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278142
|
- |
|
apple
|
mac_os_x
|
Integer signedness error in IOBluetoothFamily in the Bluetooth implementation in Apple OS X before 10.10 allows attackers to execute arbitrary code in a privileged context or cause a denial of servic…
|
CWE-189
Numeric Errors
|
CVE-2014-4497
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278143
|
- |
|
apple
|
iphone_os tvos
|
The mach_port_kobject interface in the kernel in Apple iOS before 8.1.3 and Apple TV before 7.0.3 does not properly restrict kernel-address and heap-permutation information, which makes it easier for…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-4496
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278144
|
- |
|
apple
|
mac_os_x iphone_os tvos
|
The kernel in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not enforce the read-only attribute of a shared memory segment during use of a custom cache mode, which…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-4495
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278145
|
- |
|
apple
|
iphone_os
|
Springboard in Apple iOS before 8.1.3 does not properly validate signatures when determining whether to solicit an app trust decision from the user, which allows attackers to bypass intended first-la…
|
CWE-20
Improper Input Validation
|
CVE-2014-4494
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278146
|
- |
|
apple
|
iphone_os
|
The app-installation functionality in MobileInstallation in Apple iOS before 8.1.3 allows attackers to obtain control of the local app container by leveraging access to an enterprise distribution cer…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-4493
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278147
|
- |
|
apple
|
mac_os_x iphone_os tvos
|
libnetcore in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not verify that certain values have the expected data type, which allows attackers to execute arbitrary…
|
CWE-19
Data Processing Errors
|
CVE-2014-4492
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278148
|
- |
|
apple
|
mac_os_x iphone_os tvos
|
The extension APIs in the kernel in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 do not prevent the presence of addresses within an OSBundleMachOHeaders key in a respo…
|
CWE-200
Information Exposure
|
CVE-2014-4491
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278149
|
- |
|
apple
|
mac_os_x iphone_os tvos
|
IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly initialize event queues, which allows attackers to execute arbitrary code in a privileged…
|
NVD-CWE-Other
|
CVE-2014-4489
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278150
|
- |
|
apple
|
mac_os_x iphone_os tvos
|
IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly validate resource-queue metadata, which allows attackers to execute arbitrary code in a p…
|
CWE-19
Data Processing Errors
|
CVE-2014-4488
|
2024-11-21 11:10 |
2015-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|