Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.1
CVE-2013-5155
The Sandbox subsystem in Apple iOS before 7 allows attackers to cause a denial of service (infinite loop) via an application that writes crafted valu…
Iphone Os
after 6.1.4
HIGH 7.8
CVE-2013-5140
The kernel in Apple iOS before 7 allows remote attackers to cause a denial of service (assertion failure and device restart) via an invalid packet fr…
Iphone Os
after 6.1.4
MEDIUM 6.1
CVE-2011-2391
The IPv6 implementation in the kernel in Apple iOS before 7 allows remote attackers to cause a denial of service (CPU consumption) via crafted ICMPv6…
Mac Os X
after 12.1
MEDIUM 5.8
CVE-2013-1028
The IPSec implementation in Apple Mac OS X before 10.8.5, when Hybrid Auth is used, does not verify X.509 certificates from security gateways, which …
Iphone Os
after 10.8.4
MEDIUM 6.9
CVE-2013-3954
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not properly validate the data for file actions and port actions, which a…
Mac Os X
after 6.1.4
MEDIUM 6.2
CVE-2013-3955
The get_xattrinfo function in the XNU kernel in Apple iOS 5.x and 6.x through 6.1.3 on iPad devices does not properly validate the header of an Apple…
Iphone Os
No fix yet
MEDIUM 6.8
CVE-2013-1024
CoreMedia Playback in Apple Mac OS X before 10.8.4 does not properly initialize memory during the processing of text tracks, which allows remote atta…
Mac Os X
after 10.8.3
MEDIUM 6.8
CVE-2012-3719
Mail in Apple Mac OS X before 10.7.5 does not properly handle embedded web plugins, which allows remote attackers to execute arbitrary plugin code vi…
Mac Os X
after 10.7.4
MEDIUM 5.8
CVE-2012-4672
Apple iChat Server does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains vi…
Ichat Server
Mitigation only
MEDIUM 5.8
CVE-2012-3689
WebKit in Apple Safari before 6.0 does not properly handle drag-and-drop events, which allows user-assisted remote attackers to bypass the Same Origi…
Safari
after 5.1.7
MEDIUM 5.8
CVE-2012-3691
WebKit in Apple Safari before 6.0 does not properly handle Cascading Style Sheets (CSS) property values, which allows remote attackers to bypass the …
Safari
after 5.1.7
MEDIUM 5.0
CVE-2012-0676
WebKit in Apple Safari before 5.1.7 does not properly track state information during the processing of form input, which allows remote attackers to f…
Safari
after 5.1.6
MEDIUM 6.4
CVE-2012-0584
The Internationalized Domain Name (IDN) feature in Apple Safari before 5.1.4 on Windows does not properly restrict the characters in URLs, which allo…
Safari
after 5.1.2
MEDIUM 5.0
CVE-2012-0641
CFNetwork in Apple iOS before 5.1 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensiti…
Iphone Os
5.1+
MEDIUM 6.8
CVE-2011-3227
libsecurity in Apple Mac OS X before 10.7.2 does not properly handle errors during processing of a nonstandard extension in a Certificate Revocation …
Mac Os X
after 10.7.1
HIGH 7.5
CVE-2011-0228EPSS 6%
The Data Security component in Apple iOS before 4.2.10 and 4.3.x before 4.3.5 does not check the basicConstraints parameter during validation of X.50…
Iphone Os
after 4.2.9
HIGH 8.8
CVE-2011-1774EPSS 43%
WebKit in Apple Safari before 5.0.6 has improper libxslt security settings, which allows remote attackers to create arbitrary files, and consequently…
Safari
after 5.0.5
HIGH 9.3
CVE-2011-0215
ImageIO in Apple Safari before 5.0.6 on Windows does not properly address re-entrancy issues, which allows remote attackers to execute arbitrary code…
Safari
after 5.0.5
HIGH 7.2
CVE-2011-0182
The i386_set_ldt system call in the kernel in Apple Mac OS X before 10.6.7 does not properly handle call gates, which allows local users to gain priv…
Mac Os X
after 10.6.6
HIGH 7.8
CVE-2011-0162
Wi-Fi in Apple iOS before 4.3 and Apple TV before 4.2 does not properly perform bounds checking for Wi-Fi frames, which allows remote attackers to ca…
Iphone Os
after 4.2
MEDIUM 5.0
CVE-2011-0159
The Safari Settings feature in Safari in Apple iOS 4.x before 4.3 does not properly implement the clearing of cookies during execution of the Safari …
Iphone Os
Mitigation only
MEDIUM 5.0
CVE-2011-0160
WebKit, as used in Apple Safari before 5.0.4 and iOS before 4.3, does not properly handle redirects in conjunction with HTTP Basic Authentication, wh…
Safari
after 5.0.3
MEDIUM 6.8
CVE-2010-3788
QuickTime in Apple Mac OS X 10.6.x before 10.6.5 accesses uninitialized memory locations during processing of JP2 image data, which allows remote att…
Mac Os X
Patch available
HIGH 7.1
CVE-2010-1844
Unspecified vulnerability in Image Capture in Apple Mac OS X 10.6.x before 10.6.5 allows remote attackers to cause a denial of service (memory consum…
Mac Os X
Patch available
MEDIUM 6.8
CVE-2010-1845
ImageIO in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr…
Mac Os X
Patch available
HIGH 7.8
CVE-2010-1843
Networking in Apple Mac OS X 10.6.2 through 10.6.4 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) v…
Mac Os X
Patch available
HIGH 9.3
CVE-2010-1841
Disk Images in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory …
Mac Os X
Patch available
MEDIUM 5.8
CVE-2010-1834
CFNetwork in Apple Mac OS X 10.6.x before 10.6.5 does not properly validate the domains of cookies, which makes it easier for remote web servers to t…
Mac Os X
Patch available
MEDIUM 5.0
CVE-2010-1828
AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemo…
Mac Os X
Patch available
HIGH 9.3
CVE-2010-1807EPSS 61%
WebKit in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2; Android before 2.2; and webkitgtk before 1.2.6; does not properly validate floating-poi…
Safari
after 2.1