CVE-2015-7066 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7066
10 Dec 2015 — OpenGL in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, a different vulnerability than CVE-2015-7064. OpenGL en Apple iOS en versiones anteriores a 9.2, OS X en versiones anteriores a 10.11.2, tvOS en versiones anteriores a 9.1 y watchOS en versiones anteriores a 2.1 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de ... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2015-7068 – Apple Mac OSX - IOSCSIPeripheralDeviceType00 Userclient Type 12 Kernel NULL Dereference
https://notcve.org/view.php?id=CVE-2015-7068
10 Dec 2015 — IOKit SCSI in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (NULL pointer dereference) via an app that provides an unspecified userclient type. IOKit SCSI en Apple iOS en versiones anteriores a 9.2, OS X en versiones anteriores a 10.11.2, tvOS en versiones anteriores a 9.1 y watchOS en versiones anteriores a 2.1 permite a atacantes ejecutar código arbitrario en un contexto pri... • https://packetstorm.news/files/id/135430 • CWE-476: NULL Pointer Dereference •
CVE-2015-7069 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7069
10 Dec 2015 — Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7070. Mobile Replayer en GPUTools Framework en Apple iOS en versiones anteriores a 9.2 permite a atacantes ejecutar código arbitrario en un contexto privilegiado a través de una aplicación que proporciona un nombre de ruta manipulado, una vulnerabilidad diferente a CVE-2015-7070. iOS 9.2 is now av... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html •
CVE-2015-7070 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7070
10 Dec 2015 — Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7069. Mobile Replayer en GPUTools Framework en Apple iOS en versiones anteriores a 9.2 permite a atacantes ejecutar código arbitrario en un contexto privilegiado a través de una aplicación que proporciona un nombre de ruta manipulado, una vulnerabilidad diferente a CVE-2015-7069. iOS 9.2 is now av... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html •
CVE-2015-7072 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7072
10 Dec 2015 — dyld in Apple iOS before 9.2, tvOS before 9.1, and watchOS before 2.1 mishandles segment validation, which allows attackers to execute arbitrary code in a privileged context via a crafted app. dyld en Apple iOS en versiones anteriores a 9.2, tvOS en versiones anteriores a 9.1 y watchOS en versiones anteriores a 2.1 no maneja adecuadamente la validación de segmento, lo que permite a atacantes ejecutar código arbitrario en un contexto privilegiado a través de una aplicación manipulada. iOS 9.2 is now availabl... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html • CWE-20: Improper Input Validation •
CVE-2015-7073 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7073
10 Dec 2015 — Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted SSL handshake. Apple iOS en versiones anteriores a 9.2, OS X en versiones anteriores a 10.11.2, tvOS en versiones anteriores a 9.1 y watchOS en versiones anteriores a 2.1 permite a atacantes remotos ejecutar código arbitrario o provocar una denegación de servicio (corrupción de memoria y caída ... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2015-7084 – Apple Mac OSX / iOS Kernel - iokit Registry Iterator Manipulation Double-Free
https://notcve.org/view.php?id=CVE-2015-7084
10 Dec 2015 — The kernel in Apple iOS before 9.2, OS X before 10.11.2, tvOS before 9.1, and watchOS before 2.1 allows local users to gain privileges or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-7083. El kernel en Apple iOS en versiones anteriores a 9.2, OS X en versiones anteriores a 10.11.2, tvOS en versiones anteriores a 9.1 y watchOS en versiones anteriores a 2.1 permite a usuarios locales obtener privilegios o causar una denegación de servicio (corr... • https://packetstorm.news/files/id/135436 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2015-7094 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7094
10 Dec 2015 — CFNetwork HTTPProtocol in Apple iOS before 9.2 and OS X before 10.11.2 allows man-in-the-middle attackers to bypass the HSTS protection mechanism via a crafted URL. CFNetwork HTTPProtocol en Apple iOS en versiones anteriores a 9.2 y OS X en versiones anteriores a 10.11.2 permite a atacantes man-in-the-middle eludir los mecanismos de protección HSTS a través de una URL manipulada. OS X El Capitan 10.11.2 and Security Update 2015-008 is now available and addresses 54 vulnerabilities. • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html • CWE-20: Improper Input Validation •
CVE-2015-7095 – Apple Security Advisory 2015-12-08-1
https://notcve.org/view.php?id=CVE-2015-7095
10 Dec 2015 — WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2015-7048, CVE-2015-7096, CVE-2015-7097, CVE-2015-7098, CVE-2015-7099, CVE-2015-7100, CVE-2015-7101, CVE-2015-7102, and CVE-2015-7103. WebKit en Apple iOS en versiones anteriores a 9.2, Safari en versiones anteriores a 9.0.2 y tvOS en versiones anteriores a 9... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2015-7096 – Gentoo Linux Security Advisory 201706-15
https://notcve.org/view.php?id=CVE-2015-7096
10 Dec 2015 — WebKit in Apple iOS before 9.2, Safari before 9.0.2, and tvOS before 9.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than CVE-2015-7048, CVE-2015-7095, CVE-2015-7097, CVE-2015-7098, CVE-2015-7099, CVE-2015-7100, CVE-2015-7101, CVE-2015-7102, and CVE-2015-7103. WebKit en Apple iOS en versiones anteriores a 9.2, Safari en versiones anteriores a 9.0.2 y tvOS en versiones anteriores a 9... • http://lists.apple.com/archives/security-announce/2015/Dec/msg00000.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •