Vulnerabilities > Apple > Iphone OS > 5.0

DATE CVE VULNERABILITY TITLE RISK
2013-06-18 CVE-2013-4616 Credentials Management vulnerability in Apple Iphone OS
The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage method for selection of Wi-Fi hotspot WPA2 PSK passphrases, which makes it easier for remote attackers to obtain access via a brute-force attack that leverages the insufficient number of possible passphrases.
low complexity
apple CWE-255
5.8
2013-06-05 CVE-2013-3955 Improper Input Validation vulnerability in Apple products
The get_xattrinfo function in the XNU kernel in Apple iOS 5.x and 6.x through 6.1.3 on iPad devices does not properly validate the header of an AppleDouble file, which might allow local users to cause a denial of service (memory corruption) or have unspecified other impact via an invalid file on an msdosfs filesystem.
local
high complexity
apple CWE-20
6.2
2013-06-05 CVE-2013-3954 Improper Input Validation vulnerability in Apple Iphone OS and mac OS X
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not properly validate the data for file actions and port actions, which allows local users to (1) cause a denial of service (panic) via a size value that is inconsistent with a header count field, or (2) obtain sensitive information from kernel heap memory via a certain size value in conjunction with a crafted buffer.
local
apple CWE-20
6.9
2013-06-05 CVE-2013-3953 Information Exposure vulnerability in Apple Iphone OS and mac OS X
The mach_port_space_info function in osfmk/ipc/mach_debug.c in the XNU kernel in Apple Mac OS X 10.8.x does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted call.
local
low complexity
apple CWE-200
4.9
2013-06-05 CVE-2013-3951 Improper Input Validation vulnerability in Apple Iphone OS, mac OS X and Watchos
sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a program with a call-path beginning with the stack-guard= substring, as demonstrated by an iOS untethering attack or an attack against a setuid Mac OS X program.
local
low complexity
apple CWE-20
4.6
2013-05-24 CVE-2013-1019 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Iphone OS and Quicktime
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
network
apple microsoft CWE-119
critical
9.3
2013-05-20 CVE-2013-1010 Resource Management Errors vulnerability in Apple Iphone OS and Itunes
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
network
apple microsoft CWE-399
critical
9.3
2013-05-20 CVE-2013-1008 Resource Management Errors vulnerability in Apple Iphone OS and Itunes
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
network
apple microsoft CWE-399
critical
9.3
2013-05-20 CVE-2013-1007 Resource Management Errors vulnerability in Apple Iphone OS and Itunes
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
network
apple microsoft CWE-399
critical
9.3
2013-05-20 CVE-2013-1006 Resource Management Errors vulnerability in Apple Iphone OS and Itunes
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
network
apple microsoft CWE-399
critical
9.3