Filtered by vendor Apple
Subscriptions
Filtered by product Mac Os X
Subscriptions
Total
5567 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2015-3781 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
Cross-site scripting (XSS) vulnerability in Quick Look in Apple OS X before 10.10.5 allows remote attackers to inject arbitrary web script or HTML via a previously visited web site that is rendered during a Quick Look search. | ||||
CVE-2015-3780 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
The Bluetooth subsystem in Apple OS X before 10.10.5 allows attackers to obtain sensitive kernel memory-layout information via a crafted app. | ||||
CVE-2015-3779 | 1 Apple | 2 Mac Os X, Quicktime | 2024-11-21 | N/A |
QuickTime 7 in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted file, a different vulnerability than CVE-2015-3765, CVE-2015-3788, CVE-2015-3789, CVE-2015-3790, CVE-2015-3791, CVE-2015-3792, CVE-2015-5751, CVE-2015-5753, and CVE-2015-5779. | ||||
CVE-2015-3778 | 1 Apple | 2 Iphone Os, Mac Os X | 2024-11-21 | N/A |
bootp in Apple iOS before 8.4.1 and OS X before 10.10.5 allows remote attackers to obtain potentially sensitive information about MAC addresses seen in previous Wi-Fi sessions by sniffing an 802.11 network for DNAv4 broadcast traffic. | ||||
CVE-2015-3777 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
Multiple buffer overflows in blued in the Bluetooth subsystem in Apple OS X before 10.10.5 allow local users to gain privileges via XPC messages. | ||||
CVE-2015-3776 | 1 Apple | 2 Iphone Os, Mac Os X | 2024-11-21 | N/A |
IOKit in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption and application crash) via a malformed plist. | ||||
CVE-2015-3775 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
Apple OS X before 10.10.5 does not properly implement authentication, which allows local users to obtain admin privileges via unspecified vectors. | ||||
CVE-2015-3774 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
The Dictionary app in Apple OS X before 10.10.5 does not use HTTPS, which allows man-in-the-middle attackers to obtain sensitive information by sniffing the network or spoof word definitions by modifying the client-server data stream. | ||||
CVE-2015-3773 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
The SMB client in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors. | ||||
CVE-2015-3772 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
IOFireWireFamily in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3769 and CVE-2015-3771. | ||||
CVE-2015-3771 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
IOFireWireFamily in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3769 and CVE-2015-3772. | ||||
CVE-2015-3770 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
IOGraphics in Apple OS X before 10.10.5 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2015-5783. | ||||
CVE-2015-3769 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
IOFireWireFamily in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-3771 and CVE-2015-3772. | ||||
CVE-2015-3768 | 1 Apple | 2 Iphone Os, Mac Os X | 2024-11-21 | N/A |
Integer overflow in the kernel in Apple iOS before 8.4.1 and OS X before 10.10.5 allows attackers to execute arbitrary code in a privileged context via a crafted app that makes unspecified IOKit API calls. | ||||
CVE-2015-3767 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
udf in Apple OS X before 10.10.5 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via a malformed DMG image. | ||||
CVE-2015-3766 | 1 Apple | 2 Iphone Os, Mac Os X | 2024-11-21 | N/A |
The kernel in Apple iOS before 8.4.1 and OS X before 10.10.5 does not properly restrict the mach_port_space_info interface, which allows attackers to obtain sensitive memory-layout information via a crafted app. | ||||
CVE-2015-3765 | 1 Apple | 2 Mac Os X, Quicktime | 2024-11-21 | N/A |
QuickTime 7 in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted file, a different vulnerability than CVE-2015-3779, CVE-2015-3788, CVE-2015-3789, CVE-2015-3790, CVE-2015-3791, CVE-2015-3792, CVE-2015-5751, CVE-2015-5753, and CVE-2015-5779. | ||||
CVE-2015-3764 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
Notification Center in Apple OS X before 10.10.5 does not properly remove dismissed notifications, which allows attackers to read arbitrary notifications via a crafted app. | ||||
CVE-2015-3762 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
The Text Formats component in Apple OS X before 10.10.5, as used in TextEdit, allows remote attackers to read arbitrary files via a text file containing an XML external entity declaration in conjunction with an entity reference, related to an XML External Entity (XXE) issue. | ||||
CVE-2015-3761 | 1 Apple | 1 Mac Os X | 2024-11-21 | N/A |
The kernel in Apple OS X before 10.10.5 does not properly validate pathnames in the environment, which allows local users to gain privileges via unspecified vectors. |