Vulnerability index

Browse CVEs

160 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Resource Management ErrorsCWE-399 × clear
Safari HIGH 9.3
CVE-2009-1709EPSS 7%

Use-after-free vulnerability in the garbage-collection implementation in WebCore in WebKit in Apple Safari before 4.0 allows remote attackers to exec…

Fix: after 4.0_beta
Fix from $1,950 2009-06-10
Safari HIGH 9.3
CVE-2009-1711EPSS 7%

WebKit in Apple Safari before 4.0 does not properly initialize memory for Attr DOM objects, which allows remote attackers to execute arbitrary code o…

Fix: after 4.0_beta
Fix from $1,950 2009-06-10
Safari HIGH 9.3
CVE-2009-1687EPSS 8%

The JavaScript garbage collector in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 do…

Fix: after 4.0_beta
Fix from $1,950 2009-06-10
Safari HIGH 9.3
CVE-2009-1690EPSS 7%

Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, …

Fix: after 4.0_beta
Fix from $1,950 2009-06-10
Cups MEDIUM 5.0
CVE-2009-1196

The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attackers to cause a denial of service (cupsd daemon ou…

Patch available
Fix from $1,600 2009-06-09
Mac Os X HIGH 9.3
CVE-2009-0140

Unspecified vulnerability in the SMB component in Apple Mac OS X 10.4.11 and 10.5.6 allows remote SMB servers to cause a denial of service (memory ex…

Patch available
Fix from $1,950 2009-02-13
Mac Os X HIGH 7.8
CVE-2009-0020

Unspecified vulnerability in CarbonCore in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termin…

Patch available
Fix from $1,950 2009-02-13
Safari MEDIUM 5.0
CVE-2008-5821

Memory leak in WebKit.dll in WebKit, as used by Apple Safari 3.2 on Windows Vista SP1, allows remote attackers to cause a denial of service (memory c…

No fix yet
Fix from $1,600 2009-01-02
Mac Os X HIGH 10.0
CVE-2008-4221

The strptime API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to cause a denial of service (memory corruption and …

Fix: after 10.5.5
Fix from $1,950 2008-12-17
Mac Os X HIGH 7.1
CVE-2008-4222

natd in network_cmds in Apple Mac OS X before 10.5.6, when Internet Sharing is enabled, allows remote attackers to cause a denial of service (infinit…

Fix: after 10.5.5
Fix from $1,950 2008-12-17
Mac Os X HIGH 7.1
CVE-2008-4236

Apple Type Services (ATS) in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to cause a denial of service (infinite loop) via a crafted emb…

Fix: after 10.5.5
Fix from $1,950 2008-12-17
Safari HIGH 9.3
CVE-2008-4231EPSS 6%

Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not properly handle HTML TABLE elements, which allows rem…

Mitigation only
Fix from $1,950 2008-11-25
Iphone Os HIGH 7.1
CVE-2008-1586

ImageIO in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allow remote attackers to cause a denial of service (memory c…

Mitigation only
Fix from $1,950 2008-11-25
Cups HIGH 10.0
CVE-2008-3641EPSS 24%

The Hewlett-Packard Graphics Language (HPGL) filter in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via crafted pen width and …

Fix: after 1.3.8
Fix from $1,950 2008-10-10
Mac Os X HIGH 9.3
CVE-2008-2332

ImageIO in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows context-dependent attackers to cause a denial of service (memory corruption and appl…

Patch available
Fix from $1,950 2008-09-16
Mac Os X HIGH 9.3
CVE-2008-3608

ImageIO in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows context-dependent attackers to cause a denial of service (memory corruption and appl…

Patch available
Fix from $1,950 2008-09-16
Mac Os X HIGH 9.3
CVE-2008-3621EPSS 6%

VideoConference in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows remote attackers to cause a denial of service (memory corruption and applica…

Patch available
Fix from $1,950 2008-09-16
Mac Os X MEDIUM 6.1
CVE-2008-3613

Finder in Apple Mac OS X 10.5.2 through 10.5.4 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) …

Patch available
Fix from $1,600 2008-09-16
Iphone HIGH 9.3
CVE-2008-3632EPSS 6%

Use-after-free vulnerability in WebKit in Apple iPod touch 1.1 through 2.0.2, and iPhone 1.0 through 2.0.2, allows remote attackers to execute arbitr…

Patch available
Fix from $1,950 2008-09-11
Coregraphics HIGH 9.3
CVE-2008-2321EPSS 12%

Unspecified vulnerability in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.4 allows remote attackers to execute arbitrary code or cause a denial of…

Patch available
Fix from $1,950 2008-08-04
Quicklook HIGH 9.3
CVE-2008-2325

QuickLook in Apple Mac OS X 10.4.11 and 10.5.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and …

Patch available
Fix from $1,950 2008-08-04
Data Detectors Engine HIGH 7.1
CVE-2008-2323

Unspecified vulnerability in Data Detectors Engine in Apple Mac OS X 10.5.4 allows attackers to cause a denial of service (resource consumption) via …

Patch available
Fix from $1,950 2008-08-04
Safari HIGH 9.3
CVE-2008-2317EPSS 8%

WebCore in Apple Safari does not properly perform garbage collection of JavaScript document elements, which allows remote attackers to execute arbitr…

Mitigation only
Fix from $1,950 2008-07-14
Safari HIGH 9.3
CVE-2008-2307EPSS 7%

Unspecified vulnerability in WebKit in Apple Safari before 3.1.2, as distributed in Mac OS X before 10.5.4, and standalone for Windows and Mac OS X 1…

Fix: after 3.1.1
Fix from $1,950 2008-06-23
Mac Os X HIGH 9.3
CVE-2008-1575EPSS 6%

Unspecified vulnerability in the Apple Type Services (ATS) server in Apple Mac OS X 10.5 before 10.5.3 allows user-assisted remote attackers to execu…

Patch available
Fix from $1,950 2008-06-02
Mac Os X MEDIUM 6.8
CVE-2008-1576

Mail in Apple Mac OS X before 10.5, when an IPv6 SMTP server is used, does not properly initialize memory, which might allow remote attackers to exec…

Patch available
Fix from $1,600 2008-06-02
Safari MEDIUM 6.8
CVE-2008-1024

Apple Safari before 3.1.1, when running on Windows XP or Vista, allows remote attackers to cause a denial of service (crash) and possibly execute arb…

Mitigation only
Fix from $1,600 2008-04-17
Mobile Safari HIGH 7.1
CVE-2008-0729EPSS 8%

Mobile Safari on Apple iPhone 1.1.2 and 1.1.3 allows remote attackers to cause a denial of service (memory exhaustion and device crash) via certain J…

No fix yet
Fix from $1,950 2008-02-12
Mac Os X HIGH 10.0
CVE-2008-0040EPSS 7%

Unspecified vulnerability in NFS in Apple Mac OS X 10.5 through 10.5.1 allows remote attackers to cause a denial of service (system shutdown) or exec…

Patch available
Fix from $1,950 2008-02-12
Safari MEDIUM 6.8
CVE-2008-0035EPSS 5%

Unspecified vulnerability in Foundation, as used in Apple iPhone 1.0 through 1.1.2, iPod touch 1.1 through 1.1.2, and Mac OS X 10.5 through 10.5.1, a…

Mitigation only
Fix from $1,600 2008-01-16