CVE-2016-4726
- EPSS 0.51%
- Veröffentlicht 25.09.2016 10:59:30
- Zuletzt bearbeitet 06.05.2026 22:30:45
IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
CVE-2016-4725
- EPSS 1.31%
- Veröffentlicht 25.09.2016 10:59:29
- Zuletzt bearbeitet 06.05.2026 22:30:45
IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (memory corruption) via a crafted web site.
CVE-2016-4718
- EPSS 2.32%
- Veröffentlicht 25.09.2016 10:59:25
- Zuletzt bearbeitet 06.05.2026 22:30:45
Buffer overflow in FontParser in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to obtain sensitive information from process memory via a crafted font file.
CVE-2016-4712
- EPSS 0.47%
- Veröffentlicht 25.09.2016 10:59:19
- Zuletzt bearbeitet 06.05.2026 22:30:45
CoreCrypto in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via a crafted app.
CVE-2016-4708
- EPSS 4.17%
- Veröffentlicht 25.09.2016 10:59:15
- Zuletzt bearbeitet 06.05.2026 22:30:45
CFNetwork in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 misparses the Set-Cookie header, which allows remote attackers to obtain sensitive information via a crafted HTTP response.
- EPSS 17.73%
- Veröffentlicht 25.09.2016 10:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
Audio in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.
- EPSS 11.27%
- Veröffentlicht 25.09.2016 10:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
xpointer.c in libxml2 before 2.9.5 (as used in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3, and other products) does not forbid namespace nodes in XPointer ranges, which allows remote attackers to execute arbitrary co...
CVE-2016-4611
- EPSS 0.92%
- Veröffentlicht 25.09.2016 10:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
WebKit in Apple iOS before 10, Safari before 10, and tvOS before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4730, CVE-2016-4733...
CVE-2016-5131
- EPSS 3.69%
- Veröffentlicht 23.07.2016 19:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in libxml2 through 2.9.4, as used in Google Chrome before 52.0.2743.82, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the XPointer range-to function.
CVE-2016-4653
- EPSS 0.08%
- Veröffentlicht 22.07.2016 03:00:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-...