Apple

iPhone OS

3748 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.74%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 changes the encryption level of PPTP VPN connections to a lower level than was previously used, which makes it easier for remote attackers to obtain sensitive information or...

  • EPSS 0.07%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows physically proximate attackers to leverage the emergency-call ability of locked devices to make a phone call to an arbitrary number.

  • EPSS 0.06%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

Race condition in the Passcode Lock feature in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.0 through 2.1 allows physically proximate attackers to remove the lock and launch arbitrary applications by restoring the device from a back...

  • EPSS 0.07%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 displays SMS messages when the emergency-call screen is visible, which allows physically proximate attackers to obtain sensitive information by ...

  • EPSS 7.67%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not properly handle HTML TABLE elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applicati...

  • EPSS 0.88%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

Safari in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.1 through 2.1 does not restrict an IFRAME's content display to the boundaries of the IFRAME, which allows remote attackers to spoof a user interface via a crafted HTML document.

  • EPSS 1.16%
  • Published 25.11.2008 23:30:00
  • Last modified 09.04.2025 00:30:58

Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not isolate the call-approval dialog from the process of launching new applications, which allows remote attackers to make arbitrary phone calls via a crafted...

  • EPSS 13.96%
  • Published 10.10.2008 10:30:05
  • Last modified 09.04.2025 00:30:58

Integer signedness error in (1) QuickLook in Apple Mac OS X 10.5.5 and (2) Office Viewer in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows remote attackers to cause a denial of service (application termination) an...

Exploit
  • EPSS 58.86%
  • Published 12.09.2008 16:56:20
  • Last modified 09.04.2025 00:30:58

Heap-based buffer overflow in the xmlParseAttValueComplex function in parser.c in libxml2 before 2.7.0 allows context-dependent attackers to cause a denial of service (crash) or execute arbitrary code via a long XML entity name.

  • EPSS 2.52%
  • Published 11.09.2008 01:13:09
  • Last modified 09.04.2025 00:30:58

The Networking subsystem in Apple iPod touch 2.0 through 2.0.2, and iPhone 2.0 through 2.0.2, uses predictable TCP initial sequence numbers, which allows remote attackers to spoof or hijack a TCP connection.