Show filters
139 Total Results
Displaying 91-100 of 139
Sort by:
Attacker Value
Unknown
CVE-2018-4113
Disclosure Date: April 03, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affected. iTunes before 12.7.4 on Windows is affected. tvOS before 11.3 is affected. watchOS before 4.3 is affected. The issue involves a JavaScriptCore function in the "WebKit" component. It allows attackers to trigger an assertion failure by leveraging improper array indexing.
0
Attacker Value
Unknown
CVE-2018-4114
Disclosure Date: April 03, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affected. iTunes before 12.7.4 on Windows is affected. tvOS before 11.3 is affected. watchOS before 4.3 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
0
Attacker Value
Unknown
CVE-2018-4129
Disclosure Date: April 03, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affected. iTunes before 12.7.4 on Windows is affected. tvOS before 11.3 is affected. watchOS before 4.3 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
0
Attacker Value
Unknown
CVE-2018-4101
Disclosure Date: April 03, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affected. iTunes before 12.7.4 on Windows is affected. tvOS before 11.3 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
0
Attacker Value
Unknown
CVE-2017-1000122
Disclosure Date: November 01, 2017 (last updated November 26, 2024)
The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, does not properly validate certain message metadata, allowing a compromised secondary process to cause a denial of service (release assertion) of the UI process. This vulnerability does not affect Apple products.
0
Attacker Value
Unknown
CVE-2017-1000121
Disclosure Date: November 01, 2017 (last updated February 16, 2024)
The UNIX IPC layer in WebKit, including WebKitGTK+ prior to 2.16.3, does not properly validate message size metadata, allowing a compromised secondary process to trigger an integer overflow and subsequent buffer overflow in the UI process. This vulnerability does not affect Apple products.
0
Attacker Value
Unknown
CVE-2015-2330
Disclosure Date: March 10, 2017 (last updated November 26, 2024)
Late TLS certificate verification in WebKitGTK+ prior to 2.6.6 allows remote attackers to view a secure HTTP request, including, for example, secure cookies.
0
Attacker Value
Unknown
CVE-2016-9643
Disclosure Date: March 07, 2017 (last updated November 26, 2024)
The regex code in Webkit 2.4.11 allows remote attackers to cause a denial of service (memory consumption) as demonstrated in a large number of ($ (open parenthesis and dollar) followed by {-2,16} and a large number of +) (plus close parenthesis).
0
Attacker Value
Unknown
CVE-2017-2355
Disclosure Date: February 20, 2017 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. iCloud before 6.1.1 is affected. iTunes before 12.5.5 is affected. tvOS before 10.1.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized memory access and application crash) via a crafted web site.
0
Attacker Value
Unknown
CVE-2017-2369
Disclosure Date: February 20, 2017 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. Safari before 10.0.3 is affected. tvOS before 10.1.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
0