Apple

iPhone OS

3848 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 5.51%
  • Veröffentlicht 09.09.2010 22:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in WebKit in Apple iOS before 4.1 on the iPhone and iPod touch, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving scrollba...

  • EPSS 1.34%
  • Veröffentlicht 09.09.2010 22:00:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in ImageIO in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted GIF file.

  • EPSS 0.82%
  • Veröffentlicht 07.09.2010 18:00:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, does not properly restrict read access to images derived from CANVAS elements, which allows remote attackers to bypass t...

  • EPSS 12.15%
  • Veröffentlicht 07.09.2010 18:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 6.0.472.53, and webkitgtk before 1.2.6, allows remote attackers to execute arbitrary code or cause a denial of service (applicat...

  • EPSS 12.28%
  • Veröffentlicht 24.08.2010 20:00:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple use-after-free vulnerabilities in WebKit, as used in Apple Safari before 4.1.3 and 5.0.x before 5.0.3, Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, allow remote attackers to execute arbitrary code or cause a denial of servic...

Exploit
  • EPSS 9.38%
  • Veröffentlicht 19.08.2010 18:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Array index error in the t42_parse_sfnts function in type42/t42parse.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via negative size values for certain strings i...

  • EPSS 5.19%
  • Veröffentlicht 19.08.2010 18:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

FreeType before 2.4.2 uses incorrect integer data types during bounds checking, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file.

  • EPSS 7.8%
  • Veröffentlicht 19.08.2010 18:00:05
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Adobe Typ...

Exploit
  • EPSS 5.63%
  • Veröffentlicht 19.08.2010 18:00:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The FT_Stream_EnterFrame function in base/ftstream.c in FreeType before 2.4.2 does not properly validate certain position values, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a ...

Exploit
  • EPSS 48.44%
  • Veröffentlicht 16.08.2010 18:39:40
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple stack-based buffer overflows in the cff_decoder_parse_charstrings function in the CFF Type2 CharStrings interpreter in cff/cffgload.c in FreeType before 2.4.2, as used in Apple iOS before 4.0.2 on the iPhone and iPod touch and before 3.2.2 o...