CVE-2015-3769
- EPSS 0.05%
- Published 16.08.2015 23:59:42
- Last modified 12.04.2025 10:46:40
IOFireWireFamily in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3771 and CVE-2015-3772.
CVE-2015-3768
- EPSS 1.01%
- Published 16.08.2015 23:59:41
- Last modified 12.04.2025 10:46:40
Integer overflow in the kernel in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context via a crafted app that makes unspecified IOKit API calls.
CVE-2015-3767
- EPSS 0.05%
- Published 16.08.2015 23:59:40
- Last modified 12.04.2025 10:46:40
udf in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via a malformed DMG image.
CVE-2015-3766
- EPSS 0.52%
- Published 16.08.2015 23:59:39
- Last modified 12.04.2025 10:46:40
The kernel in Apple iOS before 8.4.1 and OS X before 10.10.5 does not properly restrict the mach_port_space_info interface, which allows attackers to obtain sensitive memory-layout information via a crafted app.
CVE-2015-3764
- EPSS 0.3%
- Published 16.08.2015 23:59:37
- Last modified 12.04.2025 10:46:40
Notification Center in Apple OS X before 10.10.5 does not properly remove dismissed notifications, which allows attackers to read arbitrary notifications via a crafted app.
- EPSS 0.47%
- Published 16.08.2015 23:59:35
- Last modified 12.04.2025 10:46:40
The Text Formats component in Apple OS X before 10.10.5, as used in TextEdit, allows remote attackers to read arbitrary files via a text file containing an XML external entity declaration in conjunction with an entity reference, related to an XML Ext...
CVE-2015-3761
- EPSS 0.05%
- Published 16.08.2015 23:59:34
- Last modified 12.04.2025 10:46:40
The kernel in Apple OS X before 10.10.5 does not properly validate pathnames in the environment, which allows local users to gain privileges via unspecified vectors.
CVE-2015-3760
- EPSS 3.44%
- Published 16.08.2015 23:59:33
- Last modified 12.04.2025 10:46:40
dyld in Apple OS X before 10.10.5 does not properly validate pathnames in the environment, which allows local users to gain privileges via unspecified vectors.
CVE-2015-3757
- EPSS 0.05%
- Published 16.08.2015 23:59:30
- Last modified 12.04.2025 10:46:40
Apple OS X before 10.10.5 does not properly restrict access to the Date & Time preferences pane, which allows local users to spoof the time by visiting this pane.
CVE-2013-7422
- EPSS 0.75%
- Published 16.08.2015 23:59:00
- Last modified 12.04.2025 10:46:40
Integer underflow in regcomp.c in Perl before 5.20, as used in Apple OS X before 10.10.5 and other products, allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via a long digit string associa...