- EPSS 2.29%
- Veröffentlicht 08.03.2012 22:55:04
- Zuletzt bearbeitet 16.06.2026 23:37:59
CFNetwork in Apple iOS before 5.1 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL, a different vulnerability than CVE-2011-3447.
CVE-2012-0642
- EPSS 4.47%
- Veröffentlicht 08.03.2012 22:55:04
- Zuletzt bearbeitet 16.06.2026 23:37:59
Integer underflow in Apple iOS before 5.1 allows remote attackers to execute arbitrary code or cause a denial of service (device crash) via a crafted catalog file in an HFS disk image.
CVE-2012-0643
- EPSS 4.88%
- Veröffentlicht 08.03.2012 22:55:04
- Zuletzt bearbeitet 16.06.2026 23:37:59
The kernel in Apple iOS before 5.1 does not properly handle debug system calls, which allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a crafted program.
CVE-2012-0644
- EPSS 0.28%
- Veröffentlicht 08.03.2012 22:55:04
- Zuletzt bearbeitet 16.06.2026 23:37:59
Race condition in the Passcode Lock feature in Apple iOS before 5.1 allows physically proximate attackers to bypass intended passcode requirements via a slide-to-dial gesture.
CVE-2012-0645
- EPSS 0.35%
- Veröffentlicht 08.03.2012 22:55:04
- Zuletzt bearbeitet 16.06.2026 23:38:00
Siri in Apple iOS before 5.1 does not properly restrict the ability of Mail.app to handle voice commands, which allows physically proximate attackers to bypass the locked state via a command that forwards an active e-mail message to an arbitrary reci...
CVE-2012-0646
- EPSS 4.84%
- Veröffentlicht 08.03.2012 22:55:04
- Zuletzt bearbeitet 16.06.2026 23:38:00
Format string vulnerability in VPN in Apple iOS before 5.1 allows remote attackers to execute arbitrary code via a crafted racoon configuration file.
CVE-2012-0612
- EPSS 3.96%
- Veröffentlicht 08.03.2012 22:55:03
- Zuletzt bearbeitet 16.06.2026 23:37:55
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebK...
CVE-2012-0613
- EPSS 3.96%
- Veröffentlicht 08.03.2012 22:55:03
- Zuletzt bearbeitet 16.06.2026 23:37:56
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebK...
CVE-2012-0614
- EPSS 3.96%
- Veröffentlicht 08.03.2012 22:55:03
- Zuletzt bearbeitet 16.06.2026 23:37:56
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebK...
CVE-2012-0615
- EPSS 3.96%
- Veröffentlicht 08.03.2012 22:55:03
- Zuletzt bearbeitet 16.06.2026 23:37:56
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebK...