Vulnerability index

Browse CVEs

6,692 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Iphone Os HIGH 7.8
CVE-2015-1157EPSS 6%

CoreText in Apple iOS 8.x through 8.3 allows remote attackers to cause a denial of service (reboot and messaging disruption) via crafted Unicode text…

Fix: after 12.2
Fix from $1,950 2015-05-28
Mac Os X HIGH 7.5
CVE-2014-8147EPSS 23%

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for U…

Fix: 55.1+
Fix from $1,950 2015-05-25
Itunes HIGH 7.5
CVE-2014-8146EPSS 24%

The resolveImplicitLevels function in common/ubidi.c in the Unicode Bidirectional Algorithm implementation in ICU4C in International Components for U…

Fix: 55.1+
Fix from $1,950 2015-05-25
Safari MEDIUM 6.8
CVE-2015-1154

WebKit, as used in Apple Safari before 6.2.6, 7.x before 7.1.6, and 8.x before 8.0.6, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2015-05-08
Safari MEDIUM 6.8
CVE-2015-1153

WebKit, as used in Apple Safari before 6.2.6, 7.x before 7.1.6, and 8.x before 8.0.6, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.2
Fix from $1,600 2015-05-08
Safari MEDIUM 6.8
CVE-2015-1152

WebKit, as used in Apple Safari before 6.2.6, 7.x before 7.1.6, and 8.x before 8.0.6, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.2
Fix from $1,600 2015-05-08
Os X Server MEDIUM 5.0
CVE-2015-1151

Wiki Server in Apple OS X Server before 4.1 allows remote attackers to bypass intended restrictions on Activity and People pages by connecting from a…

Fix: after 4.0
Fix from $1,600 2015-04-28
Os X Server MEDIUM 5.0
CVE-2015-1150

The Firewall component in Apple OS X Server before 4.1 uses an incorrect pathname in configuration files, which allows remote attackers to bypass net…

Fix: after 4.0
Fix from $1,600 2015-04-28
Xcode MEDIUM 5.0
CVE-2015-3027

Clang in LLVM, as used in Apple Xcode before 6.3, performs incorrect register allocation in a way that triggers stack storage for stack cookie pointe…

Fix: after 6.2
Fix from $1,600 2015-04-10
Xcode HIGH 7.5
CVE-2015-1149

Integer overflow in the simulator in Swift in Apple Xcode before 6.3 allows context-dependent attackers to cause a denial of service or possibly have…

Fix: after 6.2
Fix from $1,950 2015-04-10
Mac Os X MEDIUM 5.0
CVE-2015-1148

Screen Sharing in Apple OS X before 10.10.3 stores the password of a user in a log file, which might allow context-dependent attackers to obtain sens…

Fix: after 10.10.2
Fix from $1,600 2015-04-10
Mac Os X MEDIUM 5.0
CVE-2015-1147

Open Directory Client in Apple OS X before 10.10.3 sends unencrypted password-change requests in certain circumstances involving missing certificates…

Fix: 10.10.3+
Fix from $1,600 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1144

Buffer overflow in the UniformTypeIdentifiers component in Apple OS X before 10.10.3 allows local users to gain privileges via a crafted Uniform Type…

Fix: after 10.10.2
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1143

LaunchServices in Apple OS X before 10.10.3 allows local users to gain privileges via a crafted localized string, related to a "type confusion" issue.

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1140

Buffer overflow in IOHIDFamily in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors.

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X MEDIUM 6.8
CVE-2015-1139

ImageIO in Apple OS X before 10.10.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted…

Fix: 10.10.3+
Fix from $1,600 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1137

The NVIDIA graphics driver in Apple OS X before 10.10.3 allows local users to gain privileges or cause a denial of service (NULL pointer dereference)…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1135

fontd in Apple Type Services (ATS) in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors, a different vulnerabil…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X MEDIUM 6.8
CVE-2015-1136

Use-after-free vulnerability in CoreAnimation in Apple OS X before 10.10.3 allows remote attackers to execute arbitrary code by leveraging improper u…

Fix: 10.10.3+
Fix from $1,600 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1134

fontd in Apple Type Services (ATS) in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors, a different vulnerabil…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1133

fontd in Apple Type Services (ATS) in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors, a different vulnerabil…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X HIGH 10.0
CVE-2015-1132

fontd in Apple Type Services (ATS) in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors, a different vulnerabil…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.8
CVE-2015-1130 KEVEPSS 10%

The XPC implementation in Admin Framework in Apple OS X before 10.10.3 allows local users to bypass authentication and obtain admin privileges via un…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Mac Os X HIGH 7.2
CVE-2015-1131

fontd in Apple Type Services (ATS) in Apple OS X before 10.10.3 allows local users to gain privileges via unspecified vectors, a different vulnerabil…

Fix: 10.10.3+
Fix from $1,950 2015-04-10
Safari MEDIUM 5.0
CVE-2015-1128

The private-browsing implementation in Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5 allows attackers to obtain sensitive browsin…

Fix: after 6.2.4
Fix from $1,600 2015-04-10
Safari MEDIUM 6.8
CVE-2015-1124

WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote at…

Fix: after 12.1
Fix from $1,600 2015-04-10
Tvos MEDIUM 6.8
CVE-2015-1123

WebKit, as used in Apple iOS before 8.3 and Apple TV before 7.2, allows remote attackers to execute arbitrary code or cause a denial of service (memo…

Fix: after 8.2
Fix from $1,600 2015-04-10
Safari MEDIUM 6.8
CVE-2015-1122

WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote at…

Fix: after 12.1
Fix from $1,600 2015-04-10
Safari MEDIUM 6.8
CVE-2015-1121

WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote at…

Fix: after 12.1
Fix from $1,600 2015-04-10
Safari MEDIUM 6.8
CVE-2015-1120

WebKit, as used in Apple iOS before 8.3, Apple TV before 7.2, and Apple Safari before 6.2.5, 7.x before 7.1.5, and 8.x before 8.0.5, allows remote at…

Fix: after 12.1
Fix from $1,600 2015-04-10