Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2012-05-11 CVE-2012-0649 Race Condition vulnerability in Apple mac OS X and mac OS X Server
Race condition in the initialization routine in blued in Bluetooth in Apple Mac OS X before 10.7.4 allows local users to gain privileges via vectors involving a temporary file.
local
apple CWE-362
6.9
2012-05-08 CVE-2012-0674 Improper Input Validation vulnerability in Apple Iphone OS
Safari in Apple iOS before 5.1.1 allows remote attackers to spoof the location bar's URL via a crafted web site.
network
apple CWE-20
4.3
2012-05-08 CVE-2012-0672 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Iphone OS
WebKit in Apple iOS before 5.1.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
network
apple CWE-119
6.8
2012-05-04 CVE-2012-0779 Object Type Confusion Remote Code Execution vulnerability in Adobe Flash Player
Adobe Flash Player before 10.3.183.19 and 11.x before 11.2.202.235 on Windows, Mac OS X, and Linux; before 11.1.111.9 on Android 2.x and 3.x; and before 11.1.115.8 on Android 4.x allows remote attackers to execute arbitrary code via a crafted file, related to an "object confusion vulnerability," as exploited in the wild in May 2012.
network
adobe apple linux microsoft google
critical
9.3
2012-05-01 CVE-2012-1521 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in the XML parser in Google Chrome before 18.0.1025.168 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
network
google apple CWE-416
6.8
2012-05-01 CVE-2011-3081 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 18.0.1025.168 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the floating of elements, a different vulnerability than CVE-2011-3078.
network
google apple CWE-416
critical
9.3
2012-05-01 CVE-2011-3078 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 18.0.1025.168 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the floating of elements, a different vulnerability than CVE-2011-3081.
network
google apple CWE-416
6.8
2012-04-05 CVE-2011-3076 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to focus handling.
network
google apple CWE-416
6.8
2012-04-05 CVE-2011-3075 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to style-application commands.
network
google apple CWE-416
6.8
2012-04-05 CVE-2011-3074 USE After Free vulnerability in Google Chrome
Use-after-free vulnerability in Google Chrome before 18.0.1025.151 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of media.
network
google apple CWE-416
6.8