Apple

iPhone OS

3839 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.14%
  • Veröffentlicht 23.04.2014 11:52:59
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple TV before 6.1.1 does not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-...

  • EPSS 0.21%
  • Veröffentlicht 23.04.2014 11:52:59
  • Zuletzt bearbeitet 12.04.2025 10:46:40

CFNetwork in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 does not ensure that a Set-Cookie HTTP header is complete before interpreting the header's value, which allows remote attackers to bypass intended access restri...

  • EPSS 0.06%
  • Veröffentlicht 23.04.2014 11:52:59
  • Zuletzt bearbeitet 12.04.2025 10:46:40

IOKit in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 places kernel pointers into an object data structure, which makes it easier for local users to bypass the ASLR protection mechanism by reading unspecified attribute...

  • EPSS 1.14%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Buffer overflow in ImageIO in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted JPEG2000 data in a PDF document.

  • EPSS 0.26%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

IOKit HID Event in Apple iOS before 7.1 allows attackers to conduct user-action monitoring attacks against arbitrary apps via a crafted app that accesses an IOKit framework interface.

  • EPSS 0.04%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The ptmx_get_ioctl function in the ARM kernel in Apple iOS before 7.1 and Apple TV before 6.1 allows local users to gain privileges or cause a denial of service (out-of-bounds memory access and device crash) via a crafted call.

  • EPSS 0.4%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Video Driver in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to cause a denial of service (NULL pointer dereference and device hang) via a crafted video file with MPEG-4 encoding.

  • EPSS 0.06%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Photos Backend in Apple iOS before 7.1 does not properly manage the asset-library cache during deletions, which allows physically proximate attackers to obtain sensitive photo data by launching the Photos app and looking under a transparent image.

  • EPSS 0.22%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Profiles component in Apple iOS before 7.1 and Apple TV before 6.1 allows attackers to bypass intended configuration-profile visibility requirements via a long name.

  • EPSS 0.26%
  • Veröffentlicht 14.03.2014 10:55:06
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Springboard in Apple iOS before 7.1 allows physically proximate attackers to bypass intended access restrictions and read the home screen by leveraging an application crash during activation of an unactivated device.