CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2016-4618

    Last Modified: 12 Apr 2025

    Cross-site scripting (XSS) vulnerability in Safari Reader in Apple iOS before 10 and Safari before 10 allows remote attackers to inject arbitrary web script or HTML via a crafted web site, aka "Universal XSS (UXSS)."

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-4658

    Last Modified: 12 Apr 2025

    xpointer.c in libxml2 before 2.9.5 (as used in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3, and other products) does not forbid namespace nodes in XPointer ranges, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free and memory corruption) via a crafted XML document.

    Published: 25 Sept 2016
    9.1
    Critical

    CVE-2016-4694

    Last Modified: 12 Apr 2025

    The Apache HTTP Server in Apple OS X before 10.12 and OS X Server before 5.2 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted CGI client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue, a related issue to CVE-2016-5387.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4696

    Last Modified: 12 Apr 2025

    AppleEFIRuntime in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4697

    Last Modified: 12 Apr 2025

    Apple HSSPI Support in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 25 Sept 2016
    5.5
    Medium

    CVE-2016-4706

    Last Modified: 12 Apr 2025

    cd9660 in Apple OS X before 10.12 allows local users to cause a denial of service via unspecified vectors.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4700

    Last Modified: 12 Apr 2025

    AppleUUC in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app, a different vulnerability than CVE-2016-4699.

    Published: 25 Sept 2016
    6.2
    Medium

    CVE-2016-4701

    Last Modified: 12 Apr 2025

    Application Firewall in Apple OS X before 10.12 allows local users to cause a denial of service via vectors involving a crafted SO_EXECPATH environment variable.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-4702

    Last Modified: 12 Apr 2025

    Audio in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4703

    Last Modified: 12 Apr 2025

    Bluetooth in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4709

    Last Modified: 12 Apr 2025

    WindowServer in Apple OS X before 10.12 allows local users to obtain root access via vectors that leverage "type confusion," a different vulnerability than CVE-2016-4710.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4710

    Last Modified: 12 Apr 2025

    WindowServer in Apple OS X before 10.12 allows local users to obtain root access via vectors that leverage "type confusion," a different vulnerability than CVE-2016-4709.

    Published: 25 Sept 2016
    7.5
    High

    CVE-2016-4711

    Last Modified: 12 Apr 2025

    CCrypt in corecrypto in CommonCrypto in Apple iOS before 10 and OS X before 10.12 allows attackers to discover cleartext information by leveraging a function call that specifies the same buffer for input and output.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4712

    Last Modified: 12 Apr 2025

    CoreCrypto in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via a crafted app.

    Published: 25 Sept 2016
    5.3
    Medium

    CVE-2016-4713

    Last Modified: 12 Apr 2025

    CoreDisplay in Apple OS X before 10.12 allows attackers to view arbitrary users' screens by leveraging screen-sharing access.

    Published: 25 Sept 2016
    3.3
    Low

    CVE-2016-4717

    Last Modified: 12 Apr 2025

    The File Bookmark component in Apple OS X before 10.12 mishandles scoped-bookmark file descriptors, which allows attackers to cause a denial of service via a crafted app.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4726

    Last Modified: 12 Apr 2025

    IOAcceleratorFamily in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4727

    Last Modified: 12 Apr 2025

    IOThunderboltFamily in Apple OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4728

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 mishandles error prototypes, which allows remote attackers to execute arbitrary code via a crafted web site.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4729

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10 and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4731.

    Published: 25 Sept 2016
    9.6
    Critical

    CVE-2016-4734

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, Safari before 10, and tvOS before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4611, CVE-2016-4730, CVE-2016-4733, and CVE-2016-4735.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4736

    Last Modified: 12 Apr 2025

    libarchive in Apple OS X before 10.12 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted file.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4737

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, Safari before 10, tvOS before 10, and watchOS before 3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.

    Published: 25 Sept 2016
    5.5
    Medium

    CVE-2016-4742

    Last Modified: 12 Apr 2025

    NSSecureTextField in Apple OS X before 10.12 does not enable Secure Input, which allows attackers to discover credentials via a crafted app.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4750

    Last Modified: 12 Apr 2025

    S2 Camera in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 25 Sept 2016
    3.5
    Low

    CVE-2016-4751

    Last Modified: 12 Apr 2025

    The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site.

    Published: 25 Sept 2016
    5.5
    Medium

    CVE-2016-4752

    Last Modified: 12 Apr 2025

    The SecKeyDeriveFromPassword function in Apple OS X before 10.12 does not use the CF_RETURNS_RETAINED keyword, which allows attackers to obtain sensitive information from process memory by triggering key derivation.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4753

    Last Modified: 12 Apr 2025

    Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 mishandle signed disk images, which allows attackers to execute arbitrary code in a privileged context via a crafted app.

    Published: 25 Sept 2016
    7.5
    High

    CVE-2016-4754

    Last Modified: 12 Apr 2025

    ServerDocs Server in Apple OS X Server before 5.2 supports the RC4 cipher, which might allow remote attackers to defeat cryptographic protection mechanisms via unspecified vectors.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4759

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4765, CVE-2016-4766, CVE-2016-4767, and CVE-2016-4768.

    Published: 25 Sept 2016
    6.5
    Medium

    CVE-2016-4760

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to conduct DNS rebinding attacks against non-HTTP Safari sessions by leveraging HTTP/0.9 support.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4762

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, iCloud before 6.0 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4767

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4759, CVE-2016-4765, CVE-2016-4766, and CVE-2016-4768.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4768

    Last Modified: 12 Apr 2025

    WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2016-4759, CVE-2016-4765, CVE-2016-4766, and CVE-2016-4767.

    Published: 25 Sept 2016
    8.8
    High

    CVE-2016-4769

    Last Modified: 12 Apr 2025

    WebKit in Apple iTunes before 12.5.1 on Windows and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.

    Published: 25 Sept 2016
    7.1
    High

    CVE-2016-4773

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to obtain sensitive memory-layout information or cause a denial of service (out-of-bounds read) via a crafted app, a different vulnerability than CVE-2016-4774 and CVE-2016-4776.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4778

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

    Published: 25 Sept 2016
    7.8
    High

    CVE-2016-4779

    Last Modified: 12 Apr 2025

    Apple Type Services (ATS) in Apple OS X before 10.12 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7942

    Last Modified: 12 Apr 2025

    The XGetImage function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving image type and geometry, which triggers out-of-bounds read operations.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7944

    Last Modified: 12 Apr 2025

    Integer overflow in X.org libXfixes before 5.0.3 on 32-bit platforms might allow remote X servers to gain privileges via a length value of INT_MAX, which triggers the client to stop reading data and get out of sync.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7951

    Last Modified: 12 Apr 2025

    Multiple integer overflows in X.org libXtst before 1.2.3 allow remote X servers to trigger out-of-bounds memory access operations by leveraging the lack of range checks.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7943

    Last Modified: 12 Apr 2025

    The XListFonts function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving length fields, which trigger out-of-bounds write operations.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7950

    Last Modified: 12 Apr 2025

    The XRenderQueryFilters function in X.org libXrender before 0.9.10 allows remote X servers to trigger out-of-bounds write operations via vectors involving filter name lengths.

    Published: 25 Sept 2016
    7.5
    High

    CVE-2016-7945

    Last Modified: 12 Apr 2025

    Multiple integer overflows in X.org libXi before 1.7.7 allow remote X servers to cause a denial of service (out-of-bounds memory access or infinite loop) via vectors involving length fields.

    Published: 25 Sept 2016
    7.5
    High

    CVE-2016-7946

    Last Modified: 12 Apr 2025

    X.org libXi before 1.7.7 allows remote X servers to cause a denial of service (infinite loop) via vectors involving length fields.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7947

    Last Modified: 12 Apr 2025

    Multiple integer overflows in X.org libXrandr before 1.5.1 allow remote X servers to trigger out-of-bounds write operations via a crafted response.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7948

    Last Modified: 12 Apr 2025

    X.org libXrandr before 1.5.1 allows remote X servers to trigger out-of-bounds write operations by leveraging mishandling of reply data.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7949

    Last Modified: 12 Apr 2025

    Multiple buffer overflows in the (1) XvQueryAdaptors and (2) XvQueryEncodings functions in X.org libXrender before 0.9.10 allow remote X servers to trigger out-of-bounds write operations via vectors involving length fields.

    Published: 25 Sept 2016
    7.5
    High

    CVE-2016-7952

    Last Modified: 12 Apr 2025

    X.org libXtst before 1.2.3 allows remote X servers to cause a denial of service (infinite loop) via a reply in the (1) XRecordStartOfData, (2) XRecordEndOfData, or (3) XRecordClientDied category without a client sequence and with attached data.

    Published: 25 Sept 2016
    9.8
    Critical

    CVE-2016-7953

    Last Modified: 12 Apr 2025

    Buffer underflow in X.org libXvMC before 1.0.10 allows remote X servers to have unspecified impact via an empty string.

    Published: 25 Sept 2016