Show filters
162 Total Results
Displaying 151-160 of 162
Sort by:
Attacker Value
Unknown

CVE-2009-1690

Disclosure Date: June 10, 2009 (last updated October 04, 2023)
Use-after-free vulnerability in WebKit, as used in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, iPhone OS for iPod touch 1.1 through 2.2.1, Google Chrome 1.0.154.53, and possibly other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) by setting an unspecified property of an HTML tag that causes child elements to be freed and later accessed when an HTML error occurs, related to "recursion in certain DOM event handlers."
0
Attacker Value
Unknown

CVE-2008-4228

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows physically proximate attackers to leverage the emergency-call ability of locked devices to make a phone call to an arbitrary number.
0
Attacker Value
Unknown

CVE-2008-4233

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not isolate the call-approval dialog from the process of launching new applications, which allows remote attackers to make arbitrary phone calls via a crafted HTML document.
0
Attacker Value
Unknown

CVE-2008-4229

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
Race condition in the Passcode Lock feature in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.0 through 2.1 allows physically proximate attackers to remove the lock and launch arbitrary applications by restoring the device from a backup.
0
Attacker Value
Unknown

CVE-2008-4227

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 changes the encryption level of PPTP VPN connections to a lower level than was previously used, which makes it easier for remote attackers to obtain sensitive information or hijack a connection by decrypting network traffic.
0
Attacker Value
Unknown

CVE-2008-4231

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
Safari in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 does not properly handle HTML TABLE elements, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted HTML document.
0
Attacker Value
Unknown

CVE-2008-4230

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
The Passcode Lock feature in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 displays SMS messages when the emergency-call screen is visible, which allows physically proximate attackers to obtain sensitive information by reading these messages. NOTE: this might be a duplicate of CVE-2008-4593.
0
Attacker Value
Unknown

CVE-2008-1586

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
ImageIO in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allow remote attackers to cause a denial of service (memory consumption and device reset) via a crafted TIFF image.
0
Attacker Value
Unknown

CVE-2008-4232

Disclosure Date: November 25, 2008 (last updated October 04, 2023)
Safari in Apple iPhone OS 2.0 through 2.1 and iPhone OS for iPod touch 2.1 through 2.1 does not restrict an IFRAME's content display to the boundaries of the IFRAME, which allows remote attackers to spoof a user interface via a crafted HTML document.
0
Attacker Value
Unknown

CVE-2008-4211

Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Integer signedness error in (1) QuickLook in Apple Mac OS X 10.5.5 and (2) Office Viewer in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via a crafted Microsoft Excel file that triggers an out-of-bounds memory access, related to "handling of columns."
0