Latest CVE Feed
-
9.3
HIGHCVE-2016-4621
libc++abi in Apple OS X before 10.11.6 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4616
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4615
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4614
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4610
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4609
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4608
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4607
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a denial of service (memory corruption) or possibly have ... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.1
HIGHCVE-2016-4605
Calendar in Apple iOS before 9.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a crafted invitation.... Read more
Affected Products : iphone_os- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
5.8
MEDIUMCVE-2016-4604
Safari in Apple iOS before 9.3.3 allows remote attackers to spoof the displayed URL via an HTTP response specifying redirection to an invalid TCP port number.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
4.3
MEDIUMCVE-2016-4603
Web Media in Apple iOS before 9.3.3 allows attackers to bypass the Private Browsing protection mechanism and obtain sensitive video URL information by leveraging Safari View Controller misbehavior.... Read more
Affected Products : iphone_os- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4602
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerability than CVE-2016-4596, CVE-2016-4597, and CVE-2016-4600.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4601
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted SGI image.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4600
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerability than CVE-2016-4596, CVE-2016-4597, and CVE-2016-4602.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4599
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Photoshop document.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
9.8
CRITICALCVE-2016-4598
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted image.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4597
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerability than CVE-2016-4596, CVE-2016-4600, and CVE-2016-4602.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
8.8
HIGHCVE-2016-4596
QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerability than CVE-2016-4597, CVE-2016-4600, and CVE-2016-4602.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
4.6
MEDIUMCVE-2016-4595
Safari Login AutoFill in Apple OS X before 10.11.6 allows physically proximate attackers to discover passwords by reading the screen during the login procedure.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025
-
7.8
HIGHCVE-2016-4594
The Sandbox Profiles component in Apple iOS before 9.3.3, OS X before 10.11.6, tvOS before 9.2.2, and watchOS before 2.2.2 allows attackers to access the process list via a crafted app that makes an API call.... Read more
- Published: Jul. 22, 2016
- Modified: Apr. 12, 2025