Show filters
41 Total Results
Displaying 1-10 of 41
Sort by:
Attacker Value
Unknown

CVE-2014-4462

Disclosure Date: November 18, 2014 (last updated October 05, 2023)
WebKit, as used in Apple iOS before 8.1.1 and Apple TV before 7.0.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-4452.
0
Attacker Value
Unknown

CVE-2014-4461

Disclosure Date: November 18, 2014 (last updated October 05, 2023)
The kernel in Apple iOS before 8.1.1 and Apple TV before 7.0.2 does not properly validate IOSharedDataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted application.
0
Attacker Value
Unknown

CVE-2014-4455

Disclosure Date: November 18, 2014 (last updated October 05, 2023)
dyld in Apple iOS before 8.1.1 and Apple TV before 7.0.2 does not properly handle overlapping segments in Mach-O executable files, which allows local users to bypass intended code-signing restrictions via a crafted file.
0
Attacker Value
Unknown

CVE-2014-4419

Disclosure Date: September 18, 2014 (last updated October 05, 2023)
The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize memory, which allows attackers to obtain sensitive memory-content and memory-layout information via a crafted application, a different vulnerability than CVE-2014-4371, CVE-2014-4420, and CVE-2014-4421.
0
Attacker Value
Unknown

CVE-2014-4410

Disclosure Date: September 18, 2014 (last updated October 05, 2023)
WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-09-17-1 and APPLE-SA-2014-09-17-2.
0
Attacker Value
Unknown

CVE-2014-4418

Disclosure Date: September 18, 2014 (last updated November 25, 2024)
IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows attackers to execute arbitrary code in a privileged context via an application that provides crafted values in unspecified metadata fields, a different vulnerability than CVE-2014-4388.
0
Attacker Value
Unknown

CVE-2014-4372

Disclosure Date: September 18, 2014 (last updated October 05, 2023)
syslogd in the syslog subsystem in Apple iOS before 8 and Apple TV before 7 allows local users to change the permissions of arbitrary files via a symlink attack on an unspecified file.
0
Attacker Value
Unknown

CVE-2014-4375

Disclosure Date: September 18, 2014 (last updated November 25, 2024)
Double free vulnerability in Apple iOS before 8 and Apple TV before 7 allows local users to gain privileges or cause a denial of service (device crash) via vectors related to Mach ports.
0
Attacker Value
Unknown

CVE-2014-4389

Disclosure Date: September 18, 2014 (last updated October 05, 2023)
Integer overflow in IOKit in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged context via an application that provides crafted API arguments.
0
Attacker Value
Unknown

CVE-2014-4377

Disclosure Date: September 18, 2014 (last updated October 05, 2023)
Integer overflow in CoreGraphics in Apple iOS before 8 and Apple TV before 7 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document.
0