VYPR

OS X

by Apple Inc.

CVEs (553)

  • CVE-2015-5849Oct 9, 2015
    risk 0.00cvss epss 0.02

    The filtering implementation in AppleEvents in Apple OS X before 10.11 mishandles attempts to send events to a different user, which allows attackers to bypass intended access restrictions by leveraging a screen-sharing connection.

  • CVE-2015-5833Oct 9, 2015
    risk 0.00cvss epss 0.00

    The Login Window component in Apple OS X before 10.11 does not ensure that the screen is locked at the intended time, which allows physically proximate attackers to obtain access by visiting an unattended workstation.

  • CVE-2015-5830Oct 9, 2015
    risk 0.00cvss epss 0.00

    The Intel Graphics Driver component in Apple OS X before 10.11 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-5877.

  • CVE-2015-3785Oct 9, 2015
    risk 0.00cvss epss 0.00

    The Telephony component in Apple OS X before 10.11, when the Continuity feature is enabled, allows local users to bypass intended telephone-call restrictions via unspecified vectors.

  • CVE-2015-5783Aug 17, 2015
    risk 0.00cvss epss 0.03

    IOGraphics in Apple OS X before 10.10.5 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2015-3770.

  • CVE-2015-5782Aug 17, 2015
    risk 0.00cvss epss 0.02

    ImageIO in Apple iOS before 8.4.1 and OS X before 10.10.5 does not properly initialize an unspecified data structure, which allows remote attackers to obtain sensitive information from process memory via a crafted TIFF image.

  • CVE-2015-5781Aug 17, 2015
    risk 0.00cvss epss 0.02

    ImageIO in Apple iOS before 8.4.1 and OS X before 10.10.5 does not properly initialize an unspecified data structure, which allows remote attackers to obtain sensitive information from process memory via a crafted PNG image.

  • CVE-2015-5778Aug 17, 2015
    risk 0.00cvss epss 0.03

    CoreMedia Playback in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-5777.

  • CVE-2015-5777Aug 17, 2015
    risk 0.00cvss epss 0.03

    CoreMedia Playback in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file, a different vulnerability than CVE-2015-5778.

  • CVE-2015-5776Aug 17, 2015
    risk 0.00cvss epss 0.04

    Libinfo in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) by leveraging use of an AF_INET6 socket.

  • CVE-2015-5775Aug 17, 2015
    risk 0.00cvss epss 0.04

    FontParser in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file, a different vulnerability than CVE-2015-3804 and CVE-2015-5756.

  • CVE-2015-5774Aug 17, 2015
    risk 0.00cvss epss 0.00

    Buffer overflow in IOHIDFamily in Apple iOS before 8.4.1 and OS X before 10.10.5 allows local users to gain privileges via unspecified vectors.

  • CVE-2015-5773Aug 17, 2015
    risk 0.00cvss epss 0.03

    QL Office in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted office document.

  • CVE-2015-5772Aug 17, 2015
    risk 0.00cvss epss 0.03

    Heap-based buffer overflow in SceneKit in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code via a crafted Collada file.

  • CVE-2015-5771Aug 17, 2015
    risk 0.00cvss epss 0.03

    Quartz Composer Framework in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted QuickTime file.

  • CVE-2015-5768Aug 17, 2015
    risk 0.00cvss epss 0.01

    AppleGraphicsControl in Apple OS X before 10.10.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app.

  • CVE-2015-5763Aug 17, 2015
    risk 0.00cvss epss 0.00

    ntfs in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors.

  • CVE-2015-5761Aug 17, 2015
    risk 0.00cvss epss 0.03

    CoreText in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font file, a different vulnerability than CVE-2015-5755.

  • CVE-2015-5758Aug 17, 2015
    risk 0.00cvss epss 0.03

    ImageIO in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted TIFF image.

  • CVE-2015-5757Aug 17, 2015
    risk 0.00cvss epss 0.03

    libpthread in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via an app that uses a crafted syscall to interfere with locking.

Page 16 of 28