Apple

tvOS

2009 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 17.9%
  • Veröffentlicht 22.02.2014 17:05:21
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The SSLVerifySignedServerKeyExchange function in libsecurity_ssl/lib/sslKeyExchange.c in the Secure Transport feature in the Data Security component in Apple iOS 6.x before 6.1.6 and 7.x before 7.0.6, Apple TV 6.x before 6.0.2, and Apple OS X 10.9.x ...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 21.01.2014 18:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

expat before version 2.4.0 does not properly handle entities expansion unless an application developer uses the XML_SetEntityDeclHandler function, which allows remote attackers to cause a denial of service (resource consumption), send HTTP requests t...

  • EPSS 2.12%
  • Veröffentlicht 18.12.2013 16:04:33
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other W...

  • EPSS 2.76%
  • Veröffentlicht 18.12.2013 16:04:33
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other W...

  • EPSS 2.12%
  • Veröffentlicht 18.12.2013 16:04:33
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other W...

  • EPSS 0.94%
  • Veröffentlicht 18.12.2013 16:04:33
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other W...

  • EPSS 2.12%
  • Veröffentlicht 18.12.2013 16:04:28
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other W...

  • EPSS 2.12%
  • Veröffentlicht 18.12.2013 16:04:28
  • Zuletzt bearbeitet 29.04.2026 01:13:23

WebKit, as used in Apple Safari before 6.1.1 and 7.x before 7.0.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other W...

  • EPSS 0.06%
  • Veröffentlicht 20.03.2013 14:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

dyld in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not properly manage the state of file loading for Mach-O executable files, which allows local users to bypass intended code-signing requirements via a file that contains overlapping segmen...

  • EPSS 0.06%
  • Veröffentlicht 20.03.2013 14:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The ARM prefetch abort handler in the kernel in Apple iOS before 6.1.3 and Apple TV before 5.2.1 does not ensure that it has been invoked in an abort context, which makes it easier for local users to bypass the ASLR protection mechanism via crafted c...