CVE-2014-1364
- EPSS 1.58%
- Veröffentlicht 01.07.2014 10:17:26
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft...
CVE-2014-1365
- EPSS 1.58%
- Veröffentlicht 01.07.2014 10:17:26
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft...
CVE-2014-1366
- EPSS 1.58%
- Veröffentlicht 01.07.2014 10:17:26
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft...
CVE-2014-1325
- EPSS 3.32%
- Veröffentlicht 01.07.2014 10:17:25
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft...
CVE-2014-1345
- EPSS 0.62%
- Veröffentlicht 01.07.2014 10:17:25
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit in Apple iOS before 7.1.2 and Apple Safari before 6.1.5 and 7.x before 7.0.5 does not properly encode domain names in URLs, which allows remote attackers to spoof the address bar via a crafted web site.
CVE-2014-1295
- EPSS 0.19%
- Veröffentlicht 23.04.2014 11:52:59
- Zuletzt bearbeitet 06.05.2026 22:30:45
Secure Transport in Apple iOS before 7.1.1, Apple OS X 10.8.x and 10.9.x through 10.9.2, and Apple TV before 6.1.1 does not ensure that a server's X.509 certificate is the same during renegotiation as it was before renegotiation, which allows man-in-...
CVE-2014-1296
- EPSS 0.21%
- Veröffentlicht 23.04.2014 11:52:59
- Zuletzt bearbeitet 06.05.2026 22:30:45
CFNetwork in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 does not ensure that a Set-Cookie HTTP header is complete before interpreting the header's value, which allows remote attackers to bypass intended access restri...
CVE-2014-1320
- EPSS 0.06%
- Veröffentlicht 23.04.2014 11:52:59
- Zuletzt bearbeitet 06.05.2026 22:30:45
IOKit in Apple iOS before 7.1.1, Apple OS X through 10.9.2, and Apple TV before 6.1.1 places kernel pointers into an object data structure, which makes it easier for local users to bypass the ASLR protection mechanism by reading unspecified attribute...
CVE-2014-1275
- EPSS 1.14%
- Veröffentlicht 14.03.2014 10:55:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Buffer overflow in ImageIO in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted JPEG2000 data in a PDF document.
- EPSS 0.26%
- Veröffentlicht 14.03.2014 10:55:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
IOKit HID Event in Apple iOS before 7.1 allows attackers to conduct user-action monitoring attacks against arbitrary apps via a crafted app that accesses an IOKit framework interface.