Vulnerabilities > Apple > Iphone OS > 5.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-12-11 | CVE-2015-7073 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted SSL handshake. | 6.8 |
2015-12-11 | CVE-2015-7072 | Improper Input Validation vulnerability in Apple Iphone OS, Tvos and Watchos dyld in Apple iOS before 9.2, tvOS before 9.1, and watchOS before 2.1 mishandles segment validation, which allows attackers to execute arbitrary code in a privileged context via a crafted app. | 9.3 |
2015-12-11 | CVE-2015-7070 | Unspecified vulnerability in Apple Iphone OS Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7069. | 9.3 |
2015-12-11 | CVE-2015-7069 | Unspecified vulnerability in Apple Iphone OS Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7070. | 9.3 |
2015-12-11 | CVE-2015-7068 | NULL Pointer Dereference vulnerability in Apple products IOKit SCSI in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via an app that provides an unspecified userclient type. | 9.3 |
2015-12-11 | CVE-2015-7066 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products OpenGL in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2015-7064. | 6.8 |
2015-12-11 | CVE-2015-7065 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS, mac OS X and Tvos OpenGL in Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site. | 6.8 |
2015-12-11 | CVE-2015-7064 | Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products OpenGL in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2015-7066. | 6.8 |
2015-12-11 | CVE-2015-7062 | Permissions, Privileges, and Access Controls vulnerability in Apple Iphone OS and mac OS X Apple OS X before 10.11.2 and tvOS before 9.1 allow local users to bypass intended configuration-profile installation restrictions via unspecified vectors. | 4.6 |
2015-12-11 | CVE-2015-7058 | Information Exposure vulnerability in Apple Iphone OS, mac OS X and Tvos Apple iOS before 9.2, OS X before 10.11.2, and tvOS before 9.1 improperly validate keychain item ACLs, which allows attackers to obtain access to keychain items via a crafted app. | 4.3 |