VYPR

TV

by Apple Inc.

CVEs (76)

  • CVE-2014-1293Mar 14, 2014
    risk 0.00cvss epss 0.02

    WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1290,…

  • CVE-2014-1292Mar 14, 2014
    risk 0.00cvss epss 0.01

    WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1290,…

  • CVE-2014-1291Mar 14, 2014
    risk 0.00cvss epss 0.02

    WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1290,…

  • CVE-2014-1290Mar 14, 2014
    risk 0.00cvss epss 0.02

    WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1289, CVE-2014-1291,…

  • CVE-2014-1289Mar 14, 2014
    risk 0.00cvss epss 0.02

    WebKit, as used in Apple iOS before 7.1 and Apple TV before 6.1, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-1290, CVE-2014-1291,…

  • CVE-2014-1282Mar 14, 2014
    risk 0.00cvss epss 0.00

    The Profiles component in Apple iOS before 7.1 and Apple TV before 6.1 allows attackers to bypass intended configuration-profile visibility requirements via a long name.

  • CVE-2014-1280Mar 14, 2014
    risk 0.00cvss epss 0.00

    Video Driver in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to cause a denial of service (NULL pointer dereference and device hang) via a crafted video file with MPEG-4 encoding.

  • CVE-2014-1279Mar 14, 2014
    risk 0.00cvss epss 0.00

    Apple TV before 6.1 does not properly restrict logging, which allows local users to obtain sensitive information by reading log data.

  • CVE-2014-1275Mar 14, 2014
    risk 0.00cvss epss 0.01

    Buffer overflow in ImageIO in Apple iOS before 7.1 and Apple TV before 6.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted JPEG2000 data in a PDF document.

  • CVE-2014-1273Mar 14, 2014
    risk 0.00cvss epss 0.00

    dyld in Apple iOS before 7.1 and Apple TV before 6.1 allows attackers to bypass code-signing requirements by leveraging use of text-relocation instructions in a dynamic library.

  • CVE-2014-1272Mar 14, 2014
    risk 0.00cvss epss 0.00

    CrashHouseKeeping in Crash Reporting in Apple iOS before 7.1 and Apple TV before 6.1 allows local users to change arbitrary file permissions by leveraging a symlink.

  • CVE-2014-1271Mar 14, 2014
    risk 0.00cvss epss 0.00

    CoreCapture in Apple iOS before 7.1 and Apple TV before 6.1 does not properly validate IOKit API calls, which allows attackers to cause a denial of service (assertion failure and device crash) via a crafted app.

  • CVE-2011-3427Oct 14, 2011
    risk 0.00cvss epss 0.00

    The Data Security component in Apple iOS before 5 and Apple TV before 4.4 does not properly restrict use of the MD5 hash algorithm within X.509 certificates, which makes it easier for man-in-the-middle attackers to spoof servers or obtain sensitive information via a crafted…

  • CVE-2011-3259Oct 14, 2011
    risk 0.00cvss epss 0.02

    The kernel in Apple iOS before 5 and Apple TV before 4.4 does not properly recover memory allocated for incomplete TCP connections, which allows remote attackers to cause a denial of service (resource consumption) by making many connection attempts.

  • CVE-2011-1418Mar 11, 2011
    risk 0.00cvss epss 0.00

    The stateless address autoconfiguration (aka SLAAC) functionality in the IPv6 networking implementation in Apple iOS before 4.3 and Apple TV before 4.2 places the MAC address into the IPv6 address, which makes it easier for remote IPv6 servers to track users by logging source…

  • CVE-2011-0162Mar 11, 2011
    risk 0.00cvss epss 0.02

    Wi-Fi in Apple iOS before 4.3 and Apple TV before 4.2 does not properly perform bounds checking for Wi-Fi frames, which allows remote attackers to cause a denial of service (device reset) via unspecified traffic on the local wireless network.

Page 4 of 4