Apple

iPhone OS

3839 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.88%
  • Veröffentlicht 10.04.2015 14:59:32
  • Zuletzt bearbeitet 12.04.2025 10:46:40

libnetcore in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to cause a denial of service (memory corruption and application crash) via a crafted configuration profile.

  • EPSS 0.13%
  • Veröffentlicht 10.04.2015 14:59:31
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The (1) setreuid and (2) setregid system-call implementations in the kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 do not properly perform privilege drops, which makes it easier for attackers to execute code with ...

  • EPSS 0.07%
  • Veröffentlicht 10.04.2015 14:59:30
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The UIKit View component in Apple iOS before 8.3 displays unblurred application snapshots in the Task Switcher, which makes it easier for physically proximate attackers to obtain sensitive information by reading the device screen.

  • EPSS 0.07%
  • Veröffentlicht 10.04.2015 14:59:29
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Sandbox Profiles component in Apple iOS before 8.3 and Apple TV before 7.2 allows attackers to discover hardware identifiers via a crafted app.

  • EPSS 0.06%
  • Veröffentlicht 10.04.2015 14:59:29
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Telephony component in Apple iOS before 8.3 allows attackers to bypass a sandbox protection mechanism and access unintended telephone capabilities via a crafted app.

  • EPSS 0.07%
  • Veröffentlicht 10.04.2015 14:59:28
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Sandbox Profiles component in Apple iOS before 8.3 allows attackers to read the (1) telephone number or (2) e-mail address of a recent contact via a crafted app.

  • EPSS 0.34%
  • Veröffentlicht 10.04.2015 14:59:27
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, as used on iOS before 8.3 and other platforms, does not properly delete browsing-history data from the history.plist file, which allows attackers to obtain sensitive information by re...

  • EPSS 0.3%
  • Veröffentlicht 10.04.2015 14:59:26
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Safari in Apple iOS before 8.3 does not delete Recently Closed Tabs data in response to a history-clearing action, which allows attackers to obtain sensitive information by reading a history file.

  • EPSS 0.74%
  • Veröffentlicht 10.04.2015 14:59:25
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Podcasts component in Apple iOS before 8.3 and Apple TV before 7.2 allows remote attackers to discover unique identifiers by reading asset-download request data.

  • EPSS 0.07%
  • Veröffentlicht 10.04.2015 14:59:24
  • Zuletzt bearbeitet 12.04.2025 10:46:40

NetworkExtension in Apple iOS before 8.3 stores credentials in VPN configuration logs, which makes it easier for physically proximate attackers to obtain sensitive information by reading a log file.