CVE-2015-7115
- EPSS 0.83%
- Veröffentlicht 10.01.2016 03:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
libxml2 in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to obtain sensitive information or cause a denial of service (memory corruption) via a crafted XML document, a different vulnerability than CVE-2015-711...
CVE-2015-8242
- EPSS 1.66%
- Veröffentlicht 15.12.2015 21:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The xmlSAX2TextNode function in SAX2.c in the push interface in the HTML parser in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (stack-based buffer over-read and application crash) or obtain sensitive informati...
- EPSS 4.25%
- Veröffentlicht 15.12.2015 21:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The xmlParseMisc function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (out-of-bounds heap read) via unspecified vectors related to incorrect entities boundaries and start tags.
- EPSS 2.95%
- Veröffentlicht 15.12.2015 21:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the xmlGROW function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to obtain sensitive process memory information via unspecified vectors.
CVE-2015-5312
- EPSS 1.99%
- Veröffentlicht 15.12.2015 21:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The xmlStringLenDecodeEntities function in parser.c in libxml2 before 2.9.3 does not properly prevent entity expansion, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data, a different vulnerab...
CVE-2015-7112
- EPSS 19.67%
- Veröffentlicht 11.12.2015 12:00:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The IOHIDFamily API in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a differe...
CVE-2015-7111
- EPSS 1.73%
- Veröffentlicht 11.12.2015 12:00:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
The IOHIDFamily API in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a differe...
CVE-2015-7105
- EPSS 2.53%
- Veröffentlicht 11.12.2015 12:00:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
CoreGraphics in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.
CVE-2015-7104
- EPSS 1.54%
- Veröffentlicht 11.12.2015 12:00:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit in Apple Safari before 9.0.2 and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
CVE-2015-7103
- EPSS 1.01%
- Veröffentlicht 11.12.2015 12:00:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than C...