CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2014-8840

    Last Modified: 12 Apr 2025

    The iTunes Store component in Apple iOS before 8.1.3 allows remote attackers to bypass a Safari sandbox protection mechanism by leveraging redirection of an SSL URL to the iTunes Store.

    Published: 30 Jan 2015
    5
    Medium

    CVE-2014-4491

    Last Modified: 12 Apr 2025

    The extension APIs in the kernel in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 do not prevent the presence of addresses within an OSBundleMachOHeaders key in a response, which makes it easier for attackers to bypass the ASLR protection mechanism via a crafted app.

    Published: 30 Jan 2015
    7.5
    High

    CVE-2014-4492

    Last Modified: 12 Apr 2025

    libnetcore in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not verify that certain values have the expected data type, which allows attackers to execute arbitrary code in an _networkd context via a crafted XPC message from a sandboxed app, as demonstrated by lack of verification of the XPC dictionary data type.

    Published: 30 Jan 2015
    6.8
    Medium

    CVE-2014-8816

    Last Modified: 12 Apr 2025

    CoreGraphics in Apple OS X before 10.10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted PDF document.

    Published: 30 Jan 2015
    4.3
    Medium

    CVE-2014-4467

    Last Modified: 12 Apr 2025

    WebKit, as used in Apple iOS before 8.1.3, does not properly determine scrollbar boundaries during the rendering of FRAME elements, which allows remote attackers to spoof the UI via a crafted web site.

    Published: 30 Jan 2015
    6.8
    Medium

    CVE-2014-4481

    Last Modified: 12 Apr 2025

    Integer overflow in CoreGraphics in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PDF document.

    Published: 30 Jan 2015
    6.8
    Medium

    CVE-2014-4476

    Last Modified: 12 Apr 2025

    WebKit, as used in Apple iOS before 8.1.3; Apple Safari before 6.2.3, 7.x before 7.1.3, and 8.x before 8.0.3; and Apple TV before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-4477 and CVE-2014-4479.

    Published: 30 Jan 2015
    6.8
    Medium

    CVE-2014-4477

    Last Modified: 12 Apr 2025

    WebKit, as used in Apple iOS before 8.1.3; Apple Safari before 6.2.3, 7.x before 7.1.3, and 8.x before 8.0.3; and Apple TV before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-4476 and CVE-2014-4479.

    Published: 30 Jan 2015
    6.8
    Medium

    CVE-2014-4479

    Last Modified: 12 Apr 2025

    WebKit, as used in Apple iOS before 8.1.3; Apple Safari before 6.2.3, 7.x before 7.1.3, and 8.x before 8.0.3; and Apple TV before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2014-4476 and CVE-2014-4477.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4480

    Last Modified: 12 Apr 2025

    Directory traversal vulnerability in afc in AppleFileConduit in Apple iOS before 8.1.3 and Apple TV before 7.0.3 allows attackers to access unintended filesystem locations by creating a symlink.

    Published: 30 Jan 2015
    7.5
    High

    CVE-2014-4484

    Last Modified: 12 Apr 2025

    FontParser in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .dfont file.

    Published: 30 Jan 2015
    7.5
    High

    CVE-2014-4485

    Last Modified: 12 Apr 2025

    Buffer overflow in the XML parser in Foundation in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted XML document.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4486

    Last Modified: 12 Apr 2025

    IOAcceleratorFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly handle resource lists and IOService userclient types, which allows attackers to execute arbitrary code or cause a denial of service (NULL pointer dereference) via a crafted app.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4487

    Last Modified: 12 Apr 2025

    Buffer overflow in IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 allows attackers to execute arbitrary code in a privileged context via a crafted app.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4488

    Last Modified: 12 Apr 2025

    IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly validate resource-queue metadata, which allows attackers to execute arbitrary code in a privileged context via a crafted app.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4489

    Last Modified: 12 Apr 2025

    IOHIDFamily in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not properly initialize event queues, which allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via a crafted app.

    Published: 30 Jan 2015
    7.5
    High

    CVE-2014-4493

    Last Modified: 12 Apr 2025

    The app-installation functionality in MobileInstallation in Apple iOS before 8.1.3 allows attackers to obtain control of the local app container by leveraging access to an enterprise distribution certificate for signing a crafted app.

    Published: 30 Jan 2015
    6.8
    Medium

    CVE-2014-4494

    Last Modified: 12 Apr 2025

    Springboard in Apple iOS before 8.1.3 does not properly validate signatures when determining whether to solicit an app trust decision from the user, which allows attackers to bypass intended first-launch restrictions by leveraging access to an enterprise distribution certificate for signing a crafted app.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4495

    Last Modified: 12 Apr 2025

    The kernel in Apple iOS before 8.1.3, Apple OS X before 10.10.2, and Apple TV before 7.0.3 does not enforce the read-only attribute of a shared memory segment during use of a custom cache mode, which allows attackers to bypass intended access restrictions via a crafted app.

    Published: 30 Jan 2015
    5
    Medium

    CVE-2014-4496

    Last Modified: 12 Apr 2025

    The mach_port_kobject interface in the kernel in Apple iOS before 8.1.3 and Apple TV before 7.0.3 does not properly restrict kernel-address and heap-permutation information, which makes it easier for attackers to bypass the ASLR protection mechanism via a crafted app.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-4497

    Last Modified: 12 Apr 2025

    Integer signedness error in IOBluetoothFamily in the Bluetooth implementation in Apple OS X before 10.10 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (write to kernel memory) via a crafted app.

    Published: 30 Jan 2015
    4.7
    Medium

    CVE-2014-4498

    Last Modified: 12 Apr 2025

    The CPU Software in Apple OS X before 10.10.2 allows physically proximate attackers to modify firmware during the EFI update process by inserting a Thunderbolt device with crafted code in an Option ROM, aka the "Thunderstrike" issue.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-8817

    Last Modified: 12 Apr 2025

    coresymbolicationd in CoreSymbolication in Apple OS X before 10.10.2 does not verify that expected data types are present in XPC messages, which allows attackers to execute arbitrary code in a privileged context via a crafted app, as demonstrated by lack of verification of xpc_dictionary_get_value API return values during handling of a (1) match_mmap_archives, (2) delete_mmap_archives, (3) write_mmap_archive, or (4) read_mmap_archive command.

    Published: 30 Jan 2015
    7.2
    High

    CVE-2014-8819

    Last Modified: 12 Apr 2025

    The Intel Graphics Driver in Apple OS X before 10.10.2 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2014-8820 and CVE-2014-8821.

    Published: 30 Jan 2015
    7.2
    High

    CVE-2014-8820

    Last Modified: 12 Apr 2025

    The Intel Graphics Driver in Apple OS X before 10.10.2 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2014-8819 and CVE-2014-8821.

    Published: 30 Jan 2015
    7.2
    High

    CVE-2014-8821

    Last Modified: 12 Apr 2025

    The Intel Graphics Driver in Apple OS X before 10.10.2 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2014-8819 and CVE-2014-8820.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-8822

    Last Modified: 12 Apr 2025

    IOHIDFamily in Apple OS X before 10.10.2 allows attackers to execute arbitrary code in a kernel context or cause a denial of service (write to kernel memory) via a crafted app that calls an unspecified user-client method.

    Published: 30 Jan 2015
    4.7
    Medium

    CVE-2014-8823

    Last Modified: 12 Apr 2025

    The IOUSBControllerUserClient::ReadRegister function in the IOUSB controller in IOUSBFamily in Apple OS X before 10.10.2 allows local users to read data from arbitrary kernel-memory locations by leveraging root access and providing a crafted first argument.

    Published: 30 Jan 2015
    5
    Medium

    CVE-2014-8826

    Last Modified: 12 Apr 2025

    LaunchServices in Apple OS X before 10.10.2 does not properly handle file-type metadata, which allows attackers to bypass the Gatekeeper protection mechanism via a crafted JAR archive.

    Published: 30 Jan 2015
    2.1
    Low

    CVE-2014-8833

    Last Modified: 12 Apr 2025

    SpotlightIndex in Apple OS X before 10.10.2 does not properly perform deserialization during access to a permission cache, which allows local users to read search results associated with other users' protected files via a Spotlight query.

    Published: 30 Jan 2015
    2.1
    Low

    CVE-2014-8834

    Last Modified: 12 Apr 2025

    UserAccountUpdater in Apple OS X 10.10 before 10.10.2 stores a PDF document's password in a printing preference file, which allows local users to obtain sensitive information by reading a file.

    Published: 30 Jan 2015
    9.3
    Critical

    CVE-2014-8835

    Last Modified: 12 Apr 2025

    The xpc_data_get_bytes function in libxpc in Apple OS X before 10.10.2 does not verify that a dictionary's Attributes key has the xpc_data data type, which allows attackers to execute arbitrary code by providing a crafted dictionary to sysmond, related to an "XPC type confusion" issue.

    Published: 30 Jan 2015
    10
    Critical

    CVE-2014-8836

    Last Modified: 12 Apr 2025

    The Bluetooth driver in Apple OS X before 10.10.2 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (arbitrary-size bzero of kernel memory) via a crafted app.

    Published: 30 Jan 2015
    9.3
    Critical

    CVE-2014-8837

    Last Modified: 12 Apr 2025

    Multiple unspecified vulnerabilities in the Bluetooth driver in Apple OS X before 10.10.2 allow attackers to execute arbitrary code in a privileged context via a crafted app.

    Published: 30 Jan 2015
    4.3
    Medium

    CVE-2014-8838

    Last Modified: 12 Apr 2025

    The Security component in Apple OS X before 10.10.2 does not properly process cached information about app certificates, which allows attackers to bypass the Gatekeeper protection mechanism by leveraging access to a revoked Developer ID certificate for signing a crafted app.

    Published: 30 Jan 2015
    5
    Medium

    CVE-2014-8839

    Last Modified: 12 Apr 2025

    Spotlight in Apple OS X before 10.10.2 does not enforce the Mail "Load remote content in messages" configuration, which allows remote attackers to discover recipient IP addresses by including an inline image in an HTML e-mail message and logging HTTP requests for this image's URL.

    Published: 30 Jan 2015
    9.3
    Critical

    CVE-2014-9161

    Last Modified: 12 Apr 2025

    CoolType.dll in Adobe Reader and Acrobat 10.x before 10.1.13 and 11.x before 11.0.10 on Windows, and 10.x through 10.1.13 and 11.x through 11.0.10 on OS X, allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted PDF document.

    Published: 30 Jan 2015
    6.4
    Medium

    CVE-2014-8370

    Last Modified: 12 Apr 2025

    VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, VMware Fusion 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allow host OS users to gain host OS privileges or cause a denial of service (arbitrary write to a file) by modifying a configuration file.

    Published: 29 Jan 2015
    3.3
    Low

    CVE-2015-1043

    Last Modified: 12 Apr 2025

    The Host Guest File System (HGFS) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware Fusion 6.x before 6.0.5 and 7.x before 7.0.1 allows guest OS users to cause a guest OS denial of service via unspecified vectors.

    Published: 29 Jan 2015
    3.3
    Low

    CVE-2015-1044

    Last Modified: 12 Apr 2025

    vmware-authd (aka the Authorization process) in VMware Workstation 10.x before 10.0.5, VMware Player 6.x before 6.0.5, and VMware ESXi 5.0 through 5.5 allows attackers to cause a host OS denial of service via unspecified vectors.

    Published: 29 Jan 2015
    4.3
    Medium

    CVE-2015-1422

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) horder[], (2) jak_catid, (3) jak_content, (4) jak_css, (5) jak_delete_log[], (6) jak_email, (7) jak_extfile, (8) jak_file, (9) jak_hookshow[], (10) jak_img, (11) jak_javascript, (12) jak_lcontent, (13) jak_name, (14) jak_password, (15) jak_showcontact, (16) jak_tags, (17) jak_title, (18) jak_url, (19) jak_username, (20) real_hook_id[], (21) sp, (22) sreal_plugin_id[], (23) ssp, or (24) sssp parameter to admin/index.php or the (25) editor, (26) field_id, (27) fldr, (28) lang, (29) popup, (30) subfolder, or (31) type parameter to js/editor/plugins/filemanager/dialog.php.

    Published: 29 Jan 2015
    6.5
    Medium

    CVE-2015-1423

    Last Modified: 12 Apr 2025

    Multiple SQL injection vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote administrators to execute arbitrary SQL commands via the (1) jak_delete_log[] or (2) ssp parameter to admin/index.php.

    Published: 29 Jan 2015
    6.8
    Medium

    CVE-2015-1424

    Last Modified: 12 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Gecko CMS 2.2 and 2.3 allows remote attackers to hijack the authentication of administrators for requests that add an administrator user via a newuser request to admin/index.php.

    Published: 29 Jan 2015
    3.5
    Low

    CVE-2014-8893

    Last Modified: 12 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in (1) mainpage.jsp and (2) GetImageServlet.img in IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allow remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

    Published: 29 Jan 2015
    4.9
    Medium

    CVE-2014-8894

    Last Modified: 12 Apr 2025

    Open redirect vulnerability in IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote authenticated users to redirect users to arbitrary web sites and conduct phishing attacks via the out parameter.

    Published: 29 Jan 2015
    4.3
    Medium

    CVE-2014-8895

    Last Modified: 12 Apr 2025

    IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allows remote attackers to bypass intended access restrictions and read the image files of arbitrary users via a crafted URL.

    Published: 29 Jan 2015
    6.1
    Medium

    CVE-2014-0141

    Last Modified: 20 Apr 2025

    Cross-site scripting (XSS) vulnerability in Red Hat Satellite 6.0.3.

    Published: 29 Jan 2015
    9.8
    Critical

    CVE-2015-8779

    Last Modified: 12 Apr 2025

    Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long catalog name.

    Published: 29 Jan 2015
    2.1
    Low

    CVE-2015-1563

    Last Modified: 12 Apr 2025

    The ARM GIC distributor virtualization in Xen 4.4.x and 4.5.x allows local guests to cause a denial of service by causing a large number messages to be logged.

    Published: 29 Jan 2015
    7.8
    High

    CVE-2015-0586

    Last Modified: 12 Apr 2025

    The Network-Based Application Recognition (NBAR) protocol implementation in Cisco IOS 15.3(100)M and earlier on Cisco 2900 Integrated Services Router (aka Cisco Internet Router) devices allows remote attackers to cause a denial of service (NBAR process hang) via IPv4 packets, aka Bug ID CSCuo73682.

    Published: 28 Jan 2015