Vulnerability index

Browse CVEs

6,692 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mac Os X MEDIUM 6.8
CVE-2014-8816

CoreGraphics in Apple OS X before 10.10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and applica…

Fix: after 10.9.5
Fix from $1,600 2015-01-30
Mac Os X HIGH 10.0
CVE-2014-4497

Integer signedness error in IOBluetoothFamily in the Bluetooth implementation in Apple OS X before 10.10 allows attackers to execute arbitrary code i…

Fix: after 10.9.5
Fix from $1,950 2015-01-30
Iphone Os MEDIUM 5.0
CVE-2014-4496

The mach_port_kobject interface in the kernel in Apple iOS before 8.1.3 and Apple TV before 7.0.3 does not properly restrict kernel-address and heap-…

Fix: after 8.1.2
Fix from $1,600 2015-01-30
Iphone Os HIGH 10.0
CVE-2014-4495

The kernel in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not enforce the read-only attribute of a shared memor…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os MEDIUM 6.8
CVE-2014-4494

Springboard in Apple iOS before 8.1.3 does not properly validate signatures when determining whether to solicit an app trust decision from the user, …

Fix: after 8.1.2
Fix from $1,600 2015-01-30
Iphone Os HIGH 7.5
CVE-2014-4493

The app-installation functionality in MobileInstallation in Apple iOS before 8.1.3 allows attackers to obtain control of the local app container by l…

Fix: after 8.1.2
Fix from $1,950 2015-01-30
Iphone Os HIGH 7.5
CVE-2014-4492EPSS 20%

libnetcore in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not verify that certain values have the expected data…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os HIGH 10.0
CVE-2014-4489

IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly initialize event queues, which allows a…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os MEDIUM 5.0
CVE-2014-4491

The extension APIs in the kernel in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 do not prevent the presence of addre…

Fix: after 10.10.1
Fix from $1,600 2015-01-30
Iphone Os HIGH 10.0
CVE-2014-4488

IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly validate resource-queue metadata, which…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os HIGH 10.0
CVE-2014-4487

Buffer overflow in IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows attackers to execute arbitrary …

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os HIGH 10.0
CVE-2014-4486

IOAcceleratorFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly handle resource lists and IOSer…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os HIGH 7.5
CVE-2014-4485

Buffer overflow in the XML parser in Foundation in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attacke…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os HIGH 7.5
CVE-2014-4484

FontParser in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attackers to execute arbitrary code or cause…

Fix: after 10.10.1
Fix from $1,950 2015-01-30
Iphone Os MEDIUM 6.8
CVE-2014-4483

Buffer overflow in FontParser in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attackers to execute arbi…

Fix: after 10.10.1
Fix from $1,600 2015-01-30
Iphone Os MEDIUM 6.8
CVE-2014-4481EPSS 6%

Integer overflow in CoreGraphics in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attackers to execute a…

Fix: after 10.10.1
Fix from $1,600 2015-01-30
Iphone Os HIGH 10.0
CVE-2014-4480

Directory traversal vulnerability in afc in AppleFileConduit in Apple iOS before 8.1.3 and Apple TV before 7.0.3 allows attackers to access unintende…

Fix: after 8.1.2
Fix from $1,950 2015-01-30
Safari MEDIUM 6.8
CVE-2014-4479

WebKit, as used in Apple iOS before 8.1.3; Apple Safari before 6.2.3, 7.x before 7.1.3, and 8.x before 8.0.3; and Apple TV before 7.0.3, allows remot…

Fix: after 12.1
Fix from $1,600 2015-01-30
Safari MEDIUM 6.8
CVE-2014-4477

WebKit, as used in Apple iOS before 8.1.3; Apple Safari before 6.2.3, 7.x before 7.1.3, and 8.x before 8.0.3; and Apple TV before 7.0.3, allows remot…

Fix: after 12.1
Fix from $1,600 2015-01-30
Safari MEDIUM 6.8
CVE-2014-4476

WebKit, as used in Apple iOS before 8.1.3; Apple Safari before 6.2.3, 7.x before 7.1.3, and 8.x before 8.0.3; and Apple TV before 7.0.3, allows remot…

Fix: after 12.1
Fix from $1,600 2015-01-30
Mac Os X MEDIUM 5.8
CVE-2014-8151

The darwinssl_connect_step1 function in lib/vtls/curl_darwinssl.c in libcurl 7.31.0 through 7.39.0, when using the DarwinSSL (aka SecureTransport) ba…

Fix: after 10.10.4
Fix from $1,600 2015-01-15
Mac Os X HIGH 8.8
CVE-2014-9495

Heap-based buffer overflow in the png_combine_row function in libpng before 1.5.21 and 1.6.x before 1.6.16, when running on 64-bit systems, might all…

Fix: after 10.11.3
Fix from $1,950 2015-01-10
Safari MEDIUM 6.8
CVE-2014-4475

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4474

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4473

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4472

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4471

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4470

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4469

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10
Safari MEDIUM 6.8
CVE-2014-4468

WebKit, as used in Apple Safari before 6.2.1, 7.x before 7.1.1, and 8.x before 8.0.1, allows remote attackers to execute arbitrary code or cause a de…

Fix: after 12.1
Fix from $1,600 2014-12-10