CVE-2015-5769
- EPSS 0.83%
- Veröffentlicht 17.08.2015 00:00:49
- Zuletzt bearbeitet 12.04.2025 10:46:40
The MSVDX driver in Apple iOS before 8.4.1 allows remote attackers to cause a denial of service (device crash) via a crafted video.
- EPSS 0.23%
- Veröffentlicht 17.08.2015 00:00:47
- Zuletzt bearbeitet 12.04.2025 10:46:40
Directory traversal vulnerability in Air Traffic in Apple iOS before 8.4.1 allows attackers to access arbitrary filesystem locations via vectors related to asset handling.
CVE-2015-5761
- EPSS 2.5%
- Veröffentlicht 17.08.2015 00:00:44
- Zuletzt bearbeitet 12.04.2025 10:46:40
CoreText in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file, a different vulnerability than CVE-2015-5755.
- EPSS 0.37%
- Veröffentlicht 17.08.2015 00:00:42
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit in Apple iOS before 8.4.1 allows remote attackers to spoof clicks via a crafted web site that leverages tap events.
CVE-2015-5758
- EPSS 2.83%
- Veröffentlicht 17.08.2015 00:00:41
- Zuletzt bearbeitet 12.04.2025 10:46:40
ImageIO in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted TIFF image.
CVE-2015-5757
- EPSS 1.08%
- Veröffentlicht 17.08.2015 00:00:39
- Zuletzt bearbeitet 12.04.2025 10:46:40
libpthread in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via an app that uses a crafted syscall to interfere with locking.
CVE-2015-5756
- EPSS 2.1%
- Veröffentlicht 17.08.2015 00:00:38
- Zuletzt bearbeitet 12.04.2025 10:46:40
FontParser in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file, a different vulnerability than CVE-2015-380...
CVE-2015-5755
- EPSS 2.81%
- Veröffentlicht 17.08.2015 00:00:36
- Zuletzt bearbeitet 12.04.2025 10:46:40
CoreText in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file, a different vulnerability than CVE-2015-5761.
- EPSS 0.43%
- Veröffentlicht 17.08.2015 00:00:32
- Zuletzt bearbeitet 12.04.2025 10:46:40
Backup in Apple iOS before 8.4.1 allows attackers to bypass intended restrictions on filesystem access via a crafted app that creates a symlink.
CVE-2015-5749
- EPSS 0.3%
- Veröffentlicht 17.08.2015 00:00:28
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Sandbox_profiles component in Apple iOS before 8.4.1 allows attackers to bypass the third-party app-sandbox protection mechanism and read arbitrary managed preferences via a crafted app.