Apple

tvOS

2009 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.97%
  • Veröffentlicht 15.12.2015 21:59:07
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The xmlSAX2TextNode function in SAX2.c in the push interface in the HTML parser in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (stack-based buffer over-read and application crash) or obtain sensitive informati...

  • EPSS 1.4%
  • Veröffentlicht 15.12.2015 21:59:05
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The xmlParseMisc function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to cause a denial of service (out-of-bounds heap read) via unspecified vectors related to incorrect entities boundaries and start tags.

  • EPSS 0.71%
  • Veröffentlicht 15.12.2015 21:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Heap-based buffer overflow in the xmlGROW function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to obtain sensitive process memory information via unspecified vectors.

  • EPSS 1.08%
  • Veröffentlicht 15.12.2015 21:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The xmlStringLenDecodeEntities function in parser.c in libxml2 before 2.9.3 does not properly prevent entity expansion, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data, a different vulnerab...

  • EPSS 19.67%
  • Veröffentlicht 11.12.2015 12:00:09
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The IOHIDFamily API in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a differe...

  • EPSS 1.73%
  • Veröffentlicht 11.12.2015 12:00:08
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The IOHIDFamily API in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a differe...

  • EPSS 2.53%
  • Veröffentlicht 11.12.2015 12:00:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

CoreGraphics in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.

  • EPSS 1.54%
  • Veröffentlicht 11.12.2015 12:00:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

WebKit in Apple Safari before 9.0.2 and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.

  • EPSS 1.01%
  • Veröffentlicht 11.12.2015 12:00:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than C...

  • EPSS 1.01%
  • Veröffentlicht 11.12.2015 11:59:59
  • Zuletzt bearbeitet 06.05.2026 22:30:45

WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than C...