CVE-2015-1108
- EPSS 0.07%
- Veröffentlicht 10.04.2015 14:59:23
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Lock Screen component in Apple iOS before 8.3 does not properly enforce the limit on incorrect passcode-authentication attempts, which makes it easier for physically proximate attackers to obtain access by making many passcode guesses.
CVE-2015-1107
- EPSS 0.06%
- Veröffentlicht 10.04.2015 14:59:22
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Lock Screen component in Apple iOS before 8.3 does not properly implement the erasure feature for incorrect passcode-authentication attempts, which makes it easier for physically proximate attackers to obtain access by making many passcode guesse...
CVE-2015-1106
- EPSS 0.07%
- Veröffentlicht 10.04.2015 14:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
The QuickType feature in the Keyboards subsystem in Apple iOS before 8.3 allows physically proximate attackers to discover passcodes by reading the lock screen during use of a Bluetooth keyboard.
- EPSS 1.37%
- Veröffentlicht 10.04.2015 14:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 does not properly determine whether an IPv6 packet had a local origin, which allows remote attackers to bypass an intended network-filtering protection mechanism v...
- EPSS 6.23%
- Veröffentlicht 10.04.2015 14:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
The TCP implementation in the kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 does not properly implement the Urgent (aka out-of-band data) mechanism, which allows remote attackers to cause a denial of service via c...
CVE-2015-1103
- EPSS 1.46%
- Veröffentlicht 10.04.2015 14:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 makes routing changes in response to ICMP_REDIRECT messages, which allows remote attackers to cause a denial of service (network outage) or obtain sensitive packet...
CVE-2015-1102
- EPSS 1.69%
- Veröffentlicht 10.04.2015 14:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 does not properly handle TCP headers, which allows man-in-the-middle attackers to cause a denial of service via unspecified vectors.
CVE-2015-1101
- EPSS 0.07%
- Veröffentlicht 10.04.2015 14:59:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
CVE-2015-1100
- EPSS 0.92%
- Veröffentlicht 10.04.2015 14:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
The kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to cause a denial of service (out-of-bounds memory access) or obtain sensitive memory-content information via a crafted app.
- EPSS 0.07%
- Veröffentlicht 10.04.2015 14:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
Race condition in the setreuid system-call implementation in the kernel in Apple iOS before 8.3, Apple OS X before 10.10.3, and Apple TV before 7.2 allows attackers to cause a denial of service via a crafted app.