Vulnerability index

Browse CVEs

6,692 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Webkit HIGH 8.8
CVE-2016-4589

WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of s…

No fix yet
Fix from $1,950 2016-07-22
Webkit HIGH 8.8
CVE-2016-4588

WebKit in Apple tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted we…

No fix yet
Fix from $1,950 2016-07-22
Webkit MEDIUM 6.5
CVE-2016-4587

WebKit in Apple iOS before 9.3.3 and tvOS before 9.2.2 allows remote attackers to obtain sensitive information from uninitialized process memory via …

No fix yet
Fix from $1,600 2016-07-22
Safari HIGH 8.8
CVE-2016-4586

WebKit in Apple Safari before 9.1.2 and tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corr…

Fix: 9.1.2 / 9.2.2+
Fix from $1,950 2016-07-22
Webkit MEDIUM 6.1
CVE-2016-4585

Cross-site scripting (XSS) vulnerability in the WebKit Page Loading implementation in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.…

No fix yet
Fix from $1,600 2016-07-22
Safari HIGH 8.8
CVE-2016-4584

The WebKit Page Loading implementation in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to execute arbit…

Fix: 9.1.2 / 9.2.2+
Fix from $1,950 2016-07-22
Iphone Os HIGH 7.8
CVE-2016-4582

The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause…

Fix: 2.2.2 / 9.2.2+
Fix from $1,950 2016-07-22
Iphone Os MEDIUM 5.5
CVE-2016-1865

The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to cause a denial of servic…

Fix: 2.2.2 / 9.2.2+
Fix from $1,600 2016-07-22
Iphone Os HIGH 7.8
CVE-2016-1863

The kernel in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause…

Fix: 2.2.2 / 9.2.2+
Fix from $1,950 2016-07-22
Mac Os X HIGH 7.8
CVE-2014-9862EPSS 7%

Integer signedness error in bspatch.c in bspatch in bsdiff, as used in Apple OS X before 10.11.6 and other products, allows remote attackers to execu…

Fix: after 10.11.5
Fix from $1,950 2016-07-22
Airport Base Station Firmware CRITICAL 9.8
CVE-2015-7029

Apple AirPort Base Station Firmware before 7.6.7 and 7.7.x before 7.7.7 misparses DNS data, which allows remote attackers to execute arbitrary code o…

Fix: after 7.6.4
Fix from $2,300 2016-07-03
Iphone Os CRITICAL 9.8
CVE-2015-7988

The handle_regservice_request function in mDNSResponder before 625.41.2 allows remote attackers to execute arbitrary code or cause a denial of servic…

Fix: 2.1 / 7.6.7+
Fix from $2,300 2016-06-26
Iphone Os CRITICAL 9.8
CVE-2015-7987

Multiple buffer overflows in mDNSResponder before 625.41.2 allow remote attackers to read or write to out-of-bounds memory locations via vectors invo…

Fix: 2.1 / 7.6.7+
Fix from $2,300 2016-06-26
Mac Os X HIGH 7.8
CVE-2016-1861

The NVIDIA Graphics Drivers subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a deni…

Fix: after 10.11.4
Fix from $1,950 2016-06-19
Safari HIGH 8.8
CVE-2016-1859

The WebKit Canvas implementation in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1 allows remote attackers to execute arbitrary c…

Fix: 2.12.1 / 9.1.1+
Fix from $1,950 2016-05-20
Safari MEDIUM 6.5
CVE-2016-1858

WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, improperly tracks taint attributes, which allows remote attack…

Fix: 2.12.0 / 9.1.1+
Fix from $1,600 2016-05-20
Safari HIGH 8.8
CVE-2016-1857

WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a d…

Fix: 2.12.3 / 9.1.1+
Fix from $1,950 2016-05-20
Safari HIGH 8.8
CVE-2016-1856

WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a d…

Fix: 2.12.1 / 9.1.1+
Fix from $1,950 2016-05-20
Safari HIGH 8.8
CVE-2016-1854

WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a d…

Fix: 2.12.1 / 9.1.1+
Fix from $1,950 2016-05-20
Safari HIGH 8.8
CVE-2016-1855

WebKit, as used in Apple iOS before 9.3.2, Safari before 9.1.1, and tvOS before 9.2.1, allows remote attackers to execute arbitrary code or cause a d…

Fix: 9.1.1 / 9.2.1+
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.5
CVE-2016-1853

Tcl in Apple OS X before 10.11.5 allows remote attackers to obtain sensitive information by leveraging SSLv2 support.

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.8
CVE-2016-1850

SceneKit in Apple OS X before 10.11.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafte…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.8
CVE-2016-1848EPSS 5%

QuickTime in Apple OS X before 10.11.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a craft…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Iphone Os HIGH 8.8
CVE-2016-1847

OpenGL, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbit…

Fix: 2.2.1 / 9.2.1+
Fix from $1,950 2016-05-20
Mac Os X HIGH 7.8
CVE-2016-1846

The nvCommandQueue::GetHandleIndex method in the NVIDIA Graphics Drivers subsystem in Apple OS X before 10.11.5 allows attackers to execute arbitrary…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Mac Os X MEDIUM 5.3
CVE-2016-1844

The Messages component in Apple OS X before 10.11.5 mishandles roster changes, which allows remote attackers to modify contact lists via unspecified …

Fix: after 10.11.4
Fix from $1,600 2016-05-20
Mac Os X HIGH 7.5
CVE-2016-1843

The Messages component in Apple OS X before 10.11.5 mishandles filename encoding, which allows remote attackers to obtain sensitive information via u…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Iphone Os HIGH 7.5
CVE-2016-1842

MapKit in Apple iOS before 9.3.2, OS X before 10.11.5, and watchOS before 2.2.1 does not use HTTPS for shared links, which allows remote attackers to…

Fix: after 10.11.4
Fix from $1,950 2016-05-20
Iphone Os HIGH 8.8
CVE-2016-1841

libxslt, as used in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1, allows remote attackers to execute arbi…

Fix: 2.2.1 / 9.2.1+
Fix from $1,950 2016-05-20
Iphone Os HIGH 7.8
CVE-2016-1832

libc in Apple iOS before 9.3.2, OS X before 10.11.5, tvOS before 9.2.1, and watchOS before 2.2.1 allows local users to gain privileges or cause a den…

Fix: 2.2.1 / 9.2.1+
Fix from $1,950 2016-05-20