|
270911
|
- |
|
apple
|
iphone_os
|
The WiFi Connectivity feature in Apple iOS before 8.4 allows remote Wi-Fi access points to trigger an automatic association, with an arbitrary security type, by operating with a recognized ESSID with…
|
CWE-254
7PK - Security Features
|
CVE-2015-3728
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270912
|
- |
|
apple
|
safari mac_os_x iphone_os
|
WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before 8.0.7, as used in Apple iOS before 8.4 and other products, does not properly restrict rename operations on WebSQL tables, which a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-3727
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270913
|
- |
|
apple
|
iphone_os
|
The Telephony subsystem in Apple iOS before 8.4 allows physically proximate attackers to execute arbitrary code via a crafted (1) SIM or (2) UIM card.
|
CWE-20
Improper Input Validation
|
CVE-2015-3726
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270914
|
- |
|
apple
|
iphone_os
|
MobileInstallation in Apple iOS before 8.4 does not ensure the uniqueness of Watch bundle IDs, which allows attackers to cause a denial of service (ID collision and Watch launch outage) via a crafted…
|
CWE-399
Resource Management Errors
|
CVE-2015-3725
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270915
|
- |
|
apple
|
iphone_os
|
CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ICC profile in a PDF document, a different vulner…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3724
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270916
|
- |
|
apple
|
iphone_os
|
CoreGraphics in Apple iOS before 8.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted ICC profile in a PDF document, a different vulner…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3723
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270917
|
- |
|
apple
|
iphone_os
|
Application Store in Apple iOS before 8.4 does not ensure the uniqueness of bundle IDs, which allows attackers to cause a denial of service (ID collision and launch outage) via a crafted universal pr…
|
CWE-254
7PK - Security Features
|
CVE-2015-3722
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270918
|
- |
|
apple
|
mac_os_x iphone_os
|
The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not properly handle HFS parameters, which allows attackers to obtain sensitive memory-layout information via a crafted app.
|
CWE-200
Information Exposure
|
CVE-2015-3721
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270919
|
- |
|
apple
|
mac_os_x
|
The kernel in Apple OS X before 10.10.4 does not properly manage memory in kernel-extension APIs, which allows attackers to obtain sensitive memory-layout information via a crafted app.
|
CWE-200
Information Exposure
|
CVE-2015-3720
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270920
|
- |
|
apple
|
mac_os_x iphone_os
|
TrueTypeScaler in FontParser in Apple iOS before 8.4 and OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-3719
|
2024-11-21 11:29 |
2015-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|