Vulnerabilities > Apple > Xcode > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-12-18 CVE-2019-8738 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
A memory corruption issue was addressed with improved state management.
network
apple CWE-119
6.8
2018-11-07 CVE-2018-16845 Resource Exhaustion vulnerability in multiple products
nginx before versions 1.15.6, 1.14.1 has a vulnerability in the ngx_http_mp4_module, which might allow an attacker to cause infinite loop in a worker process, cause a worker process crash, or might result in worker process memory disclosure by using a specially crafted mp4 file.
5.8
2018-04-03 CVE-2017-7167 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
An issue was discovered in certain Apple products.
network
apple CWE-119
6.8
2017-10-23 CVE-2017-7137 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
An issue was discovered in certain Apple products.
network
apple CWE-119
6.8
2017-10-23 CVE-2017-7136 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
An issue was discovered in certain Apple products.
network
apple CWE-119
6.8
2017-10-23 CVE-2017-7135 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
An issue was discovered in certain Apple products.
network
apple CWE-119
6.8
2017-10-23 CVE-2017-7134 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
An issue was discovered in certain Apple products.
network
apple CWE-119
6.8
2017-07-13 CVE-2017-7529 Integer Overflow or Wraparound vulnerability in multiple products
Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.
network
low complexity
f5 puppet apple CWE-190
5.0
2016-03-24 CVE-2016-1765 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Xcode
otool in Apple Xcode before 7.3 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors.
local
low complexity
apple CWE-119
4.6
2016-02-15 CVE-2016-0747 Resource Exhaustion vulnerability in multiple products
The resolver in nginx before 1.8.1 and 1.9.x before 1.9.10 does not properly limit CNAME resolution, which allows remote attackers to cause a denial of service (worker process resource consumption) via vectors related to arbitrary name resolution.
network
low complexity
f5 canonical debian opensuse apple CWE-400
5.0