Apple

iPhone OS

4169 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.55%
  • Veröffentlicht 25.10.2011 19:55:01
  • Zuletzt bearbeitet 16.06.2026 23:34:06

Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows user-assisted remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to editing operations in conjunction with an unknown pl...

  • EPSS 1.16%
  • Veröffentlicht 25.10.2011 19:55:00
  • Zuletzt bearbeitet 16.06.2026 23:32:06

Google Chrome before 15.0.874.102 does not properly handle history data, which allows user-assisted remote attackers to spoof the URL bar via unspecified vectors.

  • EPSS 1.7%
  • Veröffentlicht 14.10.2011 10:55:11
  • Zuletzt bearbeitet 16.06.2026 23:33:17

The WiFi component in Apple iOS before 5 stores WiFi credentials in an unspecified file, which makes it easier for remote attackers to obtain sensitive information via a crafted application.

  • EPSS 4.14%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:32:58

FreeType 2 before 2.4.7, as used in CoreGraphics in Apple iOS before 5, Mandriva Enterprise Server 5, and possibly other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font, ...

  • EPSS 0.35%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:32:58

The Data Access component in Apple iOS before 5 does not properly handle the existence of multiple user accounts on the same mail server, which allows local users to bypass intended access restrictions in opportunistic circumstances by leveraging a d...

  • EPSS 2.44%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:32:58

The kernel in Apple iOS before 5 and Apple TV before 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remote attackers to cause a denial of service (resource consumption) by making many connection attempts.

  • EPSS 3.35%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:32:58

Buffer overflow in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Microsoft Word document.

  • EPSS 2.93%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:32:59

Double free vulnerability in OfficeImport in Apple iOS before 5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Excel spreadsheet.

  • EPSS 1.82%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:33:16

Cross-site scripting (XSS) vulnerability in Safari in Apple iOS before 5 allows remote web servers to inject arbitrary web script or HTML via a file accompanied by a "Content-Disposition: attachment" HTTP header.

  • EPSS 0.9%
  • Veröffentlicht 14.10.2011 10:55:10
  • Zuletzt bearbeitet 16.06.2026 23:33:16

The Data Security component in Apple iOS before 5 and Apple TV before 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-middle attackers to spoof servers or obtain sensitive i...