CVE-2009-1701
- EPSS 9.72%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Use-after-free vulnerability in the JavaScript DOM implementation in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to execute arbitrary code or cause a denial of...
CVE-2009-1702
- EPSS 0.64%
- Veröffentlicht 10.06.2009 18:00:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to improper ...
CVE-2009-1690
- EPSS 8.53%
- Veröffentlicht 10.06.2009 14:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Google Chrome 1.0.154.53, and possibly other products, allows remote attackers to execute arbitrary c...
CVE-2009-0946
- EPSS 16.38%
- Veröffentlicht 17.04.2009 00:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Multiple integer overflows in FreeType 2.3.9 and earlier allow remote attackers to execute arbitrary code via vectors related to large values in certain inputs in (1) smooth/ftsmooth.c, (2) sfnt/ttcmap.c, and (3) cff/cffload.c.
CVE-2009-0040
- EPSS 8.28%
- Veröffentlicht 22.02.2009 22:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35, as used in pngcrush and other applications, allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a cr...
CVE-2008-1586
- EPSS 1.76%
- Veröffentlicht 25.11.2008 23:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
ImageIO in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allow remote attackers to cause a denial of service (memory consumption and device reset) via a crafted TIFF image.
CVE-2008-4227
- EPSS 0.74%
- Veröffentlicht 25.11.2008 23:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 changes the encryption level of PPTP VPN connections to a lower level than was previously used, which makes it easier for remote attackers to obtain sensitive information or...
CVE-2008-4228
- EPSS 0.07%
- Veröffentlicht 25.11.2008 23:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows physically proximate attackers to leverage the emergency-call ability of locked devices to make a phone call to an arbitrary number.
CVE-2008-4229
- EPSS 0.06%
- Veröffentlicht 25.11.2008 23:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
Race condition in the Passcode Lock feature in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.0 through 2.1 allows physically proximate attackers to remove the lock and launch arbitrary applications by restoring the device from a back...
CVE-2008-4230
- EPSS 0.07%
- Veröffentlicht 25.11.2008 23:30:00
- Zuletzt bearbeitet 23.04.2026 00:35:47
The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 displays SMS messages when the emergency-call screen is visible, which allows physically proximate attackers to obtain sensitive information by ...