Latest CVE Feed
-
10.0
HIGHCVE-2016-4629
ImageIO in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted xStride and yStride values in an EXR image.... Read more
- EPSS Score: %11.08
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
5.5
MEDIUMCVE-2016-4628
IOAcceleratorFamily in Apple iOS before 9.3.3 and watchOS before 2.2.2 allows local users to obtain sensitive information from kernel memory or cause a denial of service (out-of-bounds read) via unspecified vectors.... Read more
- EPSS Score: %0.09
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4627
IOAcceleratorFamily in Apple iOS before 9.3.3, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors.... Read more
- EPSS Score: %0.11
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4626
IOHIDFamily in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows local users to gain privileges or cause a denial of service (NULL pointer dereference) via unspecified vectors.... Read more
- EPSS Score: %0.10
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4625
Use-after-free vulnerability in IOSurface in Apple OS X before 10.11.6 allows local users to gain privileges via unspecified vectors.... Read more
- EPSS Score: %1.86
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4624
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4589, CVE-2016-... Read more
- EPSS Score: %1.42
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4623
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4589, CVE-2016-... Read more
- EPSS Score: %0.82
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4622
WebKit in Apple iOS before 9.3.3, Safari before 9.1.2, and tvOS before 9.2.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4589, CVE-2016-... Read more
- EPSS Score: %72.85
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.3
HIGHCVE-2016-4621
libc++abi in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.... Read more
- EPSS Score: %0.36
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4616
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %2.55
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4615
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %2.55
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4614
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %2.55
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4610
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %3.26
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4609
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %5.59
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4608
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %6.84
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4607
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- EPSS Score: %4.74
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.1
HIGHCVE-2016-4605
Calendar in Apple iOS before 9.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a crafted invitation.... Read more
Affected Products : iphone_os- EPSS Score: %0.52
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
5.8
MEDIUMCVE-2016-4604
Safari in Apple iOS before 9.3.3 allows remote attackers to spoof the displayed URL via an HTTP response specifying redirection to an invalid TCP port number.... Read more
- EPSS Score: %0.37
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-4603
Web Media in Apple iOS before 9.3.3 allows attackers to bypass the Private Browsing protection mechanism and obtain sensitive video URL information by leveraging Safari View Controller misbehavior.... Read more
Affected Products : iphone_os- EPSS Score: %0.30
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4602
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerability than CVE-2016-4596, CVE-2016-4597, and CVE-2016-4600.... Read more
- EPSS Score: %0.84
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025