CVE-2017-13870 – Apple Safari MutationObserver Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2017-13870
15 Dec 2017 — An issue was discovered in certain Apple products. iOS before 11.2 is affected. Safari before 11.0.2 is affected. iCloud before 7.2 on Windows is affected. iTunes before 12.7.2 on Windows is affected. tvOS before 11.2 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • http://www.securityfocus.com/bid/102181 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13797 – WebKit - 'WebCore::PositionIterator::decrement' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13797
13 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://packetstorm.news/files/id/145086 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13789 – Apple Security Advisory 2017-10-31-5
https://notcve.org/view.php?id=CVE-2017-13789
02 Nov 2017 — An issue was discovered in certain Apple products. Safari before 11.0.1 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the address bar via a crafted web site. Se ha descubierto un problema en algunos productos Apple.. • http://www.securitytracker.com/id/1039706 • CWE-20: Improper Input Validation •
CVE-2017-13790 – Apple Security Advisory 2017-10-31-5
https://notcve.org/view.php?id=CVE-2017-13790
02 Nov 2017 — An issue was discovered in certain Apple products. Safari before 11.0.1 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the address bar via a crafted web site. Se ha descubierto un problema en algunos productos Apple.. • http://www.securitytracker.com/id/1039706 • CWE-20: Improper Input Validation •
CVE-2017-13783 – WebKit - 'WebCore::SVGPatternElement::collectPatternAttributes' Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13783
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://packetstorm.news/files/id/145090 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13784 – WebKit - 'WebCore::SimpleLineLayout::RunResolver::runForPoint' Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13784
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://packetstorm.news/files/id/145089 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13785 – WebKit - 'WebCore::RenderText::localCaretRect' Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13785
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://packetstorm.news/files/id/145088 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13788 – Gentoo Linux Security Advisory 201712-01
https://notcve.org/view.php?id=CVE-2017-13788
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • http://www.securitytracker.com/id/1039703 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13791 – WebKit - 'WebCore::FormSubmission::create' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13791
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://packetstorm.news/files/id/145102 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13792 – WebKit - 'WebCore::InputType::element' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13792
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://packetstorm.news/files/id/145085 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •