CVE-2009-1680
- EPSS 0.07%
- Veröffentlicht 19.06.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly clear the search history when it is cleared from the Settings application, which allows physically proximate attackers to obtain the search h...
CVE-2009-1683
- EPSS 1.83%
- Veröffentlicht 19.06.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Telephony component in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to cause a denial of service (device reset) via a crafted ICMP echo request, which triggers an assertion error related...
CVE-2009-1692
- EPSS 4.27%
- Veröffentlicht 19.06.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
WebKit before r41741, as used in Apple iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Safari, and other software, allows remote attackers to cause a denial of service (memory consumption or device reset) via a web page conta...
CVE-2009-1698
- EPSS 7.84%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not initialize a pointer during handling of a Cascading Style Sheets (CSS) attr function call with a large numerical argument, which a...
CVE-2009-1699
- EPSS 5.63%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The XSL stylesheet implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle XML external entities, which allows remote attackers to read arbitrary files ...
CVE-2009-1700
- EPSS 0.88%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 does not properly handle redirects, which allows remote attackers to read XML content from arbitrary web pages v...
CVE-2009-1701
- EPSS 9.72%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Use-after-free vulnerability in the JavaScript DOM implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of...
CVE-2009-1702
- EPSS 0.57%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to improper ...
CVE-2009-1690
- EPSS 12.22%
- Veröffentlicht 10.06.2009 14:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Google Chrome 1.0.154.53, and possibly other products, allows remote attackers to execute arbitrary c...
CVE-2009-0946
- EPSS 16.51%
- Veröffentlicht 17.04.2009 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple integer overflows in FreeType 2.3.9 and earlier allow remote attackers to execute arbitrary code via vectors related to large values in certain inputs in (1) smooth/ftsmooth.c, (2) sfnt/ttcmap.c, and (3) cff/cffload.c.