Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2017-09-28 CVE-2017-11120 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
On Broadcom BCM4355C0 Wi-Fi chips 9.44.78.27.0.1.56 and other chips, an attacker can craft a malformed RRM neighbor report frame to trigger an internal buffer overflow in the Wi-Fi firmware, aka B-V2017061204.
network
low complexity
broadcom apple CWE-119
critical
9.8
2017-09-12 CVE-2017-14315 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
In Apple iOS 7 through 9, due to a BlueBorne flaw in the implementation of LEAP (Low Energy Audio Protocol), a large audio command can be sent to a targeted device and lead to a heap overflow with attacker-controlled data.
high complexity
apple CWE-119
7.5
2017-08-25 CVE-2015-3206 Improper Authentication vulnerability in Apple Pykerberos
The checkPassword function in python-kerberos does not authenticate the KDC it attempts to communicate with, which allows remote attackers to cause a denial of service (bad response), or have other unspecified impact by performing a man-in-the-middle attack.
network
high complexity
apple CWE-287
8.1
2017-08-16 CVE-2017-8248 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
A buffer overflow may occur in the processing of a downlink NAS message in Qualcomm Telephony as used in Apple iPhone 5 and later, iPad 4th generation and later, iPod touch 6th generation.
network
low complexity
apple CWE-119
critical
9.8
2017-07-20 CVE-2017-7069 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-119
7.8
2017-07-20 CVE-2017-7068 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-119
8.8
2017-07-20 CVE-2017-7067 Unspecified vulnerability in Apple mac OS X
An issue was discovered in certain Apple products.
local
low complexity
apple
5.5
2017-07-20 CVE-2017-7064 Improper Input Validation vulnerability in Apple products
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-20
5.5
2017-07-20 CVE-2017-7063 Resource Exhaustion vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-400
7.5
2017-07-20 CVE-2017-7062 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple products
An issue was discovered in certain Apple products.
network
low complexity
apple CWE-119
critical
9.8