Show filters
172 Total Results
Displaying 51-60 of 172
Sort by:
Attacker Value
Unknown

CVE-2013-4616

Disclosure Date: June 18, 2013 (last updated October 05, 2023)
The WifiPasswordController generateDefaultPassword method in Preferences in Apple iOS 6 and earlier relies on the UITextChecker suggestWordInLanguage method for selection of Wi-Fi hotspot WPA2 PSK passphrases, which makes it easier for remote attackers to obtain access via a brute-force attack that leverages the insufficient number of possible passphrases.
0
Attacker Value
Unknown

CVE-2013-3953

Disclosure Date: June 05, 2013 (last updated October 05, 2023)
The mach_port_space_info function in osfmk/ipc/mach_debug.c in the XNU kernel in Apple Mac OS X 10.8.x does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted call.
0
Attacker Value
Unknown

CVE-2013-3954

Disclosure Date: June 05, 2013 (last updated October 05, 2023)
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not properly validate the data for file actions and port actions, which allows local users to (1) cause a denial of service (panic) via a size value that is inconsistent with a header count field, or (2) obtain sensitive information from kernel heap memory via a certain size value in conjunction with a crafted buffer.
0
Attacker Value
Unknown

CVE-2013-1019

Disclosure Date: May 24, 2013 (last updated October 05, 2023)
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
0
Attacker Value
Unknown

CVE-2013-2842

Disclosure Date: May 22, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in Google Chrome before 27.0.1453.93 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of widgets.
0
Attacker Value
Unknown

CVE-2013-0999

Disclosure Date: May 20, 2013 (last updated October 05, 2023)
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
0
Attacker Value
Unknown

CVE-2013-1000

Disclosure Date: May 20, 2013 (last updated October 05, 2023)
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
0
Attacker Value
Unknown

CVE-2013-1006

Disclosure Date: May 20, 2013 (last updated October 05, 2023)
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
0
Attacker Value
Unknown

CVE-2013-1010

Disclosure Date: May 20, 2013 (last updated October 05, 2023)
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
0
Attacker Value
Unknown

CVE-2013-1005

Disclosure Date: May 20, 2013 (last updated October 05, 2023)
WebKit, as used in Apple iTunes before 11.0.3, allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via vectors related to iTunes Store browsing, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2013-05-16-1.
0