Show filters
36 Total Results
Displaying 1-10 of 36
Sort by:
Attacker Value
Unknown

CVE-2024-44157

Disclosure Date: October 11, 2024 (last updated December 18, 2024)
A stack buffer overflow was addressed through improved input validation. This issue is fixed in Apple TV 1.5.0.152 for Windows, iTunes 12.13.3 for Windows. Parsing a maliciously crafted video file may lead to unexpected system termination.
Attacker Value
Unknown

CVE-2020-27940

Disclosure Date: September 08, 2021 (last updated November 29, 2024)
This issue was addressed with improved file handling. This issue is fixed in Apple TV app for Fire OS 6.1.0.6A142:7.1.0. An attacker with file system access may modify scripts used by the app.
Attacker Value
Unknown

CVE-2016-4644

Disclosure Date: January 11, 2019 (last updated November 27, 2024)
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue was addressed by storing the authentication types with the credentials.
0
Attacker Value
Unknown

CVE-2018-4298

Disclosure Date: January 11, 2019 (last updated November 08, 2023)
In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a permissions issue existed in Remote Management. This issue was addressed through improved permission validation.
0
Attacker Value
Unknown

CVE-2018-4189

Disclosure Date: January 11, 2019 (last updated November 27, 2024)
In iOS before 11.2.5, macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, watchOS before 4.2.2, and tvOS before 11.2.5, a memory corruption issue exists and was addressed with improved memory handling.
0
Attacker Value
Unknown

CVE-2016-4643

Disclosure Date: January 11, 2019 (last updated November 27, 2024)
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through improved response validation.
0
Attacker Value
Unknown

CVE-2016-4642

Disclosure Date: January 11, 2019 (last updated November 27, 2024)
In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This issue was addressed through improved warnings.
0
Attacker Value
Unknown

CVE-2018-4241

Disclosure Date: June 08, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "Kernel" component. A buffer overflow in mptcp_usr_connectx allows attackers to execute arbitrary code in a privileged context via a crafted app.
0
Attacker Value
Unknown

CVE-2018-4206

Disclosure Date: June 08, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.3.1 is affected. macOS before 10.13.4 Security Update 2018-001 is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "Crash Reporter" component. It allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted app that replaces a privileged port name.
0
Attacker Value
Unknown

CVE-2018-4223

Disclosure Date: June 08, 2018 (last updated November 26, 2024)
An issue was discovered in certain Apple products. iOS before 11.4 is affected. macOS before 10.13.5 is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "Security" component. It allows local users to bypass intended restrictions on the reading of a persistent account identifier.
0