Vulnerability index

Browse CVEs

160 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Mac Os X MEDIUM 6.8
CVE-2011-3450

CoreUI in Apple Mac OS X 10.7.x before 10.7.3 does not properly restrict the allocation of stack memory, which allows remote attackers to execute arb…

Mitigation only
Fix from $1,600 2012-02-02
Iphone Os HIGH 7.2
CVE-2011-3442

The kernel in Apple iOS before 5.0.1 does not ensure the validity of flag combinations for an mmap system call, which allows local users to execute a…

Mitigation only
Fix from $1,950 2011-11-11
Apple Tv MEDIUM 5.0
CVE-2011-3259

The kernel in Apple iOS before 5 and Apple TV before 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remo…

Mitigation only
Fix from $1,600 2011-10-14
Iphone Os MEDIUM 5.0
CVE-2011-3432

The UIKit Alerts component in Apple iOS before 5 allows remote attackers to cause a denial of service (device hang) via a long tel: URL that triggers…

Mitigation only
Fix from $1,600 2011-10-14
Mac Os X Server MEDIUM 6.4
CVE-2011-0212

servermgrd in Apple Mac OS X before 10.6.8 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or ca…

Patch available
Fix from $1,600 2011-06-24
Mac Os X HIGH 7.8
CVE-2011-0196

AirPort in Apple Mac OS X 10.5.8 allows remote attackers to cause a denial of service (out-of-bounds read and reboot) via Wi-Fi frames on the local w…

Patch available
Fix from $1,950 2011-06-24
Safari MEDIUM 6.8
CVE-2011-1344EPSS 6%

Use-after-free vulnerability in WebKit, as used in Apple Safari before 5.0.5; iOS before 4.3.2 for iPhone, iPod, and iPad; iOS before 4.2.7 for iPhon…

Fix: after 5.0.4
Fix from $1,600 2011-03-10
Itunes HIGH 7.6
CVE-2011-0116

Use-after-free vulnerability in the setOuterText method in the htmlelement library in WebKit, as used in Apple iTunes before 10.2 on Windows, allows …

Fix: after 10.1.2
Fix from $1,950 2011-03-03
Safari HIGH 7.6
CVE-2011-0132

Use-after-free vulnerability in the Runin box functionality in the Cascading Style Sheets (CSS) 2.1 Visual Formatting Model implementation in WebKit,…

Fix: after 10.1.2
Fix from $1,950 2011-03-03
Airport Express Base Station Firmware MEDIUM 6.1
CVE-2009-2189

The ICMPv6 implementation on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 does n…

Fix: after 7.4.2
Fix from $1,600 2010-12-22
Safari HIGH 9.3
CVE-2010-3823EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, all…

Fix: after 5.0.2
Fix from $1,950 2010-11-22
Safari HIGH 9.3
CVE-2010-3824EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, all…

Fix: after 5.0.2
Fix from $1,950 2010-11-22
Safari HIGH 9.3
CVE-2010-3811EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, all…

Fix: after 5.0.2
Fix from $1,950 2010-11-22
Safari HIGH 9.3
CVE-2010-3816EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, all…

Fix: after 5.0.2
Fix from $1,950 2010-11-22
Safari HIGH 9.3
CVE-2010-3818EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, all…

Fix: after 5.0.2
Fix from $1,950 2010-11-22
Safari HIGH 9.3
CVE-2010-3820

WebKit in Apple Safari before 5.0.3 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.3 on Mac OS X 10.4, accesses uninitialized memory durin…

Fix: after 5.0.2
Fix from $1,950 2010-11-22
Safari HIGH 9.3
CVE-2010-1806EPSS 5%

Use-after-free vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 allows remote attackers to execute arbitrary code or cause a denia…

Patch available
Fix from $1,950 2010-09-10
Safari HIGH 9.3
CVE-2010-1786EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and…

Fix: after 5.0
Fix from $1,950 2010-07-30
Safari HIGH 9.3
CVE-2010-1793EPSS 7%

Multiple use-after-free vulnerabilities in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS …

Fix: after 5.0
Fix from $1,950 2010-07-30
Safari HIGH 9.3
CVE-2010-1780EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4; and…

Fix: after 5.0
Fix from $1,950 2010-07-30
Cups MEDIUM 5.0
CVE-2010-2432

The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for au…

Fix: after 1.4.3
Fix from $1,600 2010-06-22
Itunes HIGH 9.3
CVE-2010-1387EPSS 6%

Use-after-free vulnerability in JavaScriptCore in WebKit in Apple iTunes before 9.2 on Windows, and Apple iOS before 4 on the iPhone and iPod touch, …

Fix: after 9.0.3
Fix from $1,950 2010-06-18
Safari HIGH 9.3
CVE-2010-1771EPSS 6%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1761EPSS 7%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1419EPSS 7%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1758EPSS 7%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1759EPSS 16%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1750EPSS 5%

Use-after-free vulnerability in Apple Safari before 5.0 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (ap…

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1749EPSS 9%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11
Safari HIGH 9.3
CVE-2010-1414EPSS 7%

Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows …

Fix: after 4.0.5
Fix from $1,950 2010-06-11