CVE-2017-13793 – Apple Safari Node Use-After-Free Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2017-13793
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • http://www.securitytracker.com/id/1039703 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13791 – WebKit - 'WebCore::FormSubmission::create' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13791
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43176 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13795 – WebKit - 'WebCore::AXObjectCache::performDeferredCacheUpdate' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13795
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43169 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13792 – WebKit - 'WebCore::InputType::element' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13792
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43167 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13802 – WebKit - 'WebCore::Style::TreeResolver::styleForElement' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13802
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43173 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13803
https://notcve.org/view.php?id=CVE-2017-13803
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • http://www.securitytracker.com/id/1039703 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13785 – WebKit - 'WebCore::RenderText::localCaretRect' Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13785
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43170 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-7142
https://notcve.org/view.php?id=CVE-2017-7142
28 Sep 2017 — An issue was discovered in certain Apple products. Safari before 11 is affected. The issue involves the "WebKit Storage" component. It allows attackers to bypass the Safari Private Browsing protection mechanism, and consequently obtain sensitive information about visited web sites. Se ha descubierto un problema en ciertos productos Apple.. • http://www.securityfocus.com/bid/100996 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-7144
https://notcve.org/view.php?id=CVE-2017-7144
28 Sep 2017 — An issue was discovered in certain Apple products. iOS before 11 is affected. Safari before 11 is affected. The issue involves the "WebKit" component. It allows remote attackers to track Safari Private Browsing users by leveraging cookie mishandling. Se ha descubierto un problema en ciertos productos Apple. • http://www.securityfocus.com/bid/100991 • CWE-275: Permission Issues •
CVE-2017-7100
https://notcve.org/view.php?id=CVE-2017-7100
28 Sep 2017 — An issue was discovered in certain Apple products. iOS before 11 is affected. Safari before 11 is affected. iCloud before 7.0 on Windows is affected. iTunes before 12.7 on Windows is affected. tvOS before 11 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en ciertos productos Apple. • http://www.securityfocus.com/bid/100995 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •