CVE-2014-4413
- EPSS 1.11%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit ...
CVE-2014-4414
- EPSS 1.11%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit ...
CVE-2014-4415
- EPSS 1.12%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit ...
CVE-2014-4418
- EPSS 0.46%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata...
CVE-2014-4419
- EPSS 0.08%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4420
- EPSS 0.08%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4421
- EPSS 0.08%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4422
- EPSS 1.69%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The kernel in Apple iOS before 8 and Apple TV before 7 uses a predictable random number generator during the early portion of the boot process, which allows attackers to bypass certain kernel-hardening protection mechanisms by using a user-space proc...
CVE-2014-4423
- EPSS 0.59%
- Veröffentlicht 18.09.2014 10:55:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Accounts subsystem in Apple iOS before 8 allows attackers to bypass a sandbox protection mechanism and obtain an active iCloud account's Apple ID and metadata via a crafted application.
CVE-2014-4367
- EPSS 0.08%
- Veröffentlicht 18.09.2014 10:55:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
Apple iOS before 8 enables Voice Dial during all upgrade actions, which makes it easier for physically proximate attackers to launch unintended calls by speaking a telephone number.