CVE-2015-6985
- EPSS 1.1%
- Veröffentlicht 23.10.2015 21:59:28
- Zuletzt bearbeitet 12.04.2025 10:46:40
Apple Type Services (ATS) in Apple OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web page.
CVE-2015-6984
- EPSS 0.35%
- Veröffentlicht 23.10.2015 21:59:27
- Zuletzt bearbeitet 12.04.2025 10:46:40
libarchive in Apple OS X before 10.11.1 allows attackers to write to arbitrary files via a crafted app that conducts an unspecified symlink attack.
CVE-2015-6983
- EPSS 0.96%
- Veröffentlicht 23.10.2015 21:59:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
Double free vulnerability in Apple iOS before 9.1 and OS X before 10.11.1 allows attackers to write to arbitrary files via a crafted app that accesses AtomicBufferedFile descriptors.
CVE-2015-6978
- EPSS 3.77%
- Veröffentlicht 23.10.2015 21:59:25
- Zuletzt bearbeitet 12.04.2025 10:46:40
FontParser in Apple iOS before 9.1 and OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-6976, CVE-2015-6977, CVE-20...
CVE-2015-6977
- EPSS 2.1%
- Veröffentlicht 23.10.2015 21:59:24
- Zuletzt bearbeitet 12.04.2025 10:46:40
FontParser in Apple iOS before 9.1 and OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-6976, CVE-2015-6978, CVE-20...
CVE-2015-6976
- EPSS 2.1%
- Veröffentlicht 23.10.2015 21:59:23
- Zuletzt bearbeitet 12.04.2025 10:46:40
FontParser in Apple iOS before 9.1 and OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-6977, CVE-2015-6978, CVE-20...
CVE-2015-6974
- EPSS 1.08%
- Veröffentlicht 23.10.2015 21:59:22
- Zuletzt bearbeitet 12.04.2025 10:46:40
IOHIDFamily in Apple iOS before 9.1, OS X before 10.11.1, and watchOS before 2.0.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
CVE-2015-5945
- EPSS 0.04%
- Veröffentlicht 23.10.2015 21:59:21
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Sandbox subsystem in Apple OS X before 10.11.1 allows local users to gain privileges via vectors involving NVRAM parameters.
CVE-2015-5944
- EPSS 1.16%
- Veröffentlicht 23.10.2015 21:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
CoreText in Apple OS X before 10.11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.
CVE-2015-5943
- EPSS 0.22%
- Veröffentlicht 23.10.2015 21:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
SecurityAgent in Apple OS X before 10.11.1 does not prevent synthetic clicks from reaching keychain windows, which allows attackers to bypass intended access restrictions via a crafted app.