CVE-2016-7578
https://notcve.org/view.php?id=CVE-2016-7578
An issue was discovered in certain Apple products. iOS before 10.1 is affected. Safari before 10.0.1 is affected. iCloud before 6.0.1 is affected. iTunes before 12.5.2 is affected. tvOS before 10.0.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.1 está afectado. • http://www.securityfocus.com/bid/93949 http://www.securitytracker.com/id/1037139 https://support.apple.com/HT207270 https://support.apple.com/HT207271 https://support.apple.com/HT207272 https://support.apple.com/HT207273 https://support.apple.com/HT207274 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-4666
https://notcve.org/view.php?id=CVE-2016-4666
An issue was discovered in certain Apple products. iOS before 10.1 is affected. Safari before 10.0.1 is affected. tvOS before 10.0.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.1 está afectado. • http://www.securityfocus.com/bid/93851 http://www.securitytracker.com/id/1037087 https://support.apple.com/HT207270 https://support.apple.com/HT207271 https://support.apple.com/HT207272 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-4676
https://notcve.org/view.php?id=CVE-2016-4676
A Cross-origin vulnerability exists in WebKit in Apple Safari before 10.0.1 when processing location attributes, which could let a remote malicious user obtain sensitive information. Se presenta una vulnerabilidad de origen cruzado en WebKit en Apple Safari versiones anteriores a 10.0.1 al procesar atributos de ubicación, lo que podría permitir a un usuario malicioso remoto obtener información confidencial. • http://seclists.org/fulldisclosure/2016/Oct/89 http://www.securityfocus.com/bid/93851 http://www.securitytracker.com/id/1037087 https://lists.apple.com/archives/security-announce/2016/Oct/msg00002.html https://packetstormsecurity.com/files/cve/CVE-2016-4676 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2016-4677 – Apple Safari JavaScriptCore Array Out-Of-Bounds Access Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2016-4677
An issue was discovered in certain Apple products. iOS before 10.1 is affected. Safari before 10.0.1 is affected. tvOS before 10.0.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en ciertos productos Apple. iOS en versiones anteriores a 10.1 está afectado. • http://www.securityfocus.com/bid/93853 http://www.securitytracker.com/id/1037087 https://support.apple.com/HT207270 https://support.apple.com/HT207271 https://support.apple.com/HT207272 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2016-4751
https://notcve.org/view.php?id=CVE-2016-4751
The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site. El componente Safari Tabs en Apple Safari en versiones anteriores a 10 permite a atacantes remotos suplantar la barra de dirección de una pestaña a través de un sitio web manipulado. • http://lists.apple.com/archives/security-announce/2016/Sep/msg00007.html http://www.securityfocus.com/bid/93058 http://www.securitytracker.com/id/1036854 https://support.apple.com/HT207157 • CWE-254: 7PK - Security Features •