CVE-2014-4414
- EPSS 1.11%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit ...
CVE-2014-4415
- EPSS 1.12%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit ...
CVE-2014-4418
- EPSS 0.46%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata...
CVE-2014-4419
- EPSS 0.08%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4420
- EPSS 0.08%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4421
- EPSS 0.08%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4422
- EPSS 1.69%
- Published 18.09.2014 10:55:10
- Last modified 12.04.2025 10:46:40
The kernel in Apple iOS before 8 and Apple TV before 7 uses a predictable random number generator during the early portion of the boot process, which allows attackers to bypass certain kernel-hardening protection mechanisms by using a user-space proc...
CVE-2014-4369
- EPSS 1.22%
- Published 18.09.2014 10:55:09
- Last modified 12.04.2025 10:46:40
The IOAcceleratorFamily API implementation in Apple iOS before 8 and Apple TV before 7 allows attackers to cause a denial of service (NULL pointer dereference and device crash) via an application that uses crafted arguments.
CVE-2014-4371
- EPSS 0.08%
- Published 18.09.2014 10:55:09
- Last modified 12.04.2025 10:46:40
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a diffe...
CVE-2014-4372
- EPSS 0.04%
- Published 18.09.2014 10:55:09
- Last modified 12.04.2025 10:46:40
syslogd in the syslog subsystem in Apple iOS before 8 and Apple TV before 7 allows local users to change the permissions of arbitrary files via a symlink attack on an unspecified file.