CVE-2016-7600
https://notcve.org/view.php?id=CVE-2016-7600
14 Dec 2016 — An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "OpenPAM" component, which allows local users to obtain sensitive information by leveraging mishandling of failed PAM authentication by a sandboxed app. Se ha descubierto un problema en ciertos productos Apple. macOS en versiones anteriores a 10.12.2 está afectado. El problema involucra al componente "OpenPAM" que permite a usuarios locales obtener información sensible aprovechando el manejo incorrect... • http://www.securityfocus.com/bid/94903 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-7604
https://notcve.org/view.php?id=CVE-2016-7604
14 Dec 2016 — An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "CoreCapture" component. It allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors. Se ha descubierto un problema en ciertos productos Apple. macOS en versiones anteriores a 10.12.2 está afectado. El problema involucra al componente "CoreCapture". • http://www.securityfocus.com/bid/94903 • CWE-476: NULL Pointer Dereference •
CVE-2016-4688
https://notcve.org/view.php?id=CVE-2016-4688
14 Dec 2016 — An issue was discovered in certain Apple products. iOS before 10.1 is affected. macOS before 10.12.1 is affected. tvOS before 10.0.1 is affected. watchOS before 3.1 is affected. watchOS before 3.1.3 is affected. The issue involves the "FontParser" component. It allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via a crafted font. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.1 está afectado. mac... • http://www.securityfocus.com/bid/94572 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-7595
https://notcve.org/view.php?id=CVE-2016-7595
14 Dec 2016 — An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "CoreText" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted font. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. macOS en versiones anteriores a 10.12.2 está afectado. watchOS en v... • http://www.securityfocus.com/bid/94905 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-7591
https://notcve.org/view.php?id=CVE-2016-7591
14 Dec 2016 — An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "IOHIDFamily" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (use-after-free) via a crafted app. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. macOS en versiones anteriores a 10.12.2 está afectado. watchOS en version... • http://www.securityfocus.com/bid/94905 • CWE-416: Use After Free •
CVE-2016-7602 – Apple OS X AppleIntelFramebufferAzul Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2016-7602
14 Dec 2016 — An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "Intel Graphics Driver" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en ciertos productos Apple. macOS en versiones anteriores a 10.12.2 está afectado. El problema involucra al componente "Intel Graphics Driver". • http://www.securityfocus.com/bid/94903 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-7603 – Apple OS X CoreStorage Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2016-7603
14 Dec 2016 — An issue was discovered in certain Apple products. macOS before 10.12.2 is affected. The issue involves the "CoreStorage" component. It allows local users to cause a denial of service (NULL pointer dereference) via unspecified vectors. Se ha descubierto un problema en ciertos productos Apple. macOS en versiones anteriores a 10.12.2 está afectado. El problema involucra al componente "CoreStorage". • http://www.securityfocus.com/bid/94903 • CWE-476: NULL Pointer Dereference •
CVE-2016-7616 – Apple OS X IOKit Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2016-7616
13 Dec 2016 — An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "Disk Images" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.2 está afectado. macOS en versiones anteriores a 10.12.2 está afectado. watchOS en vers... • http://www.securityfocus.com/bid/94905 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-4674
https://notcve.org/view.php?id=CVE-2016-4674
24 Oct 2016 — An issue was discovered in certain Apple products. macOS before 10.12.1 is affected. The issue involves the "ATS" component. It allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors. Se ha descubierto un problema en ciertos productos Apple. macOS en versiones anteriores a 10.12.1 está afectado. El problema involucra al componente "ATS". • http://www.securityfocus.com/bid/93852 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-4661
https://notcve.org/view.php?id=CVE-2016-4661
24 Oct 2016 — An issue was discovered in certain Apple products. macOS before 10.12.1 is affected. The issue involves the "ntfs" component, which misparses disk images and allows attackers to cause a denial of service via a crafted app. Se ha descubierto un problema en ciertos productos Apple. macOS en versiones anteriores a 10.12.1 está afectado. El problema involucra el componente "ntfs", que difunde imágenes del disco y permite a atacantes provocar una denegación del servicio a través de una aplicación manipulada. • http://www.securityfocus.com/bid/93852 • CWE-20: Improper Input Validation •