CVE-2017-7163
https://notcve.org/view.php?id=CVE-2017-7163
25 Dec 2017 — An issue was discovered in certain Apple products. macOS before 10.13.2 is affected. The issue involves the "Intel Graphics Driver" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.2. • https://support.apple.com/HT208331 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-7162 – Apple iOS backboardd Double Free Privilege Escalation Vulnerability
https://notcve.org/view.php?id=CVE-2017-7162
25 Dec 2017 — An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "IOKit" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de iOS anteriores a la 11.2, las versiones de macOS anteriores a la 10.13.2, las ver... • https://support.apple.com/HT208325 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-7158
https://notcve.org/view.php?id=CVE-2017-7158
25 Dec 2017 — An issue was discovered in certain Apple products. macOS before 10.13.2 is affected. The issue involves the "Screen Sharing Server" component. It allows attackers to obtain root privileges for reading files by leveraging screen-sharing access. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.2. • https://support.apple.com/HT208331 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13883
https://notcve.org/view.php?id=CVE-2017-13883
08 Dec 2017 — An issue was discovered in certain Apple products. macOS before 10.13.2 is affected. The issue involves the "Intel Graphics Driver" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.2. • http://www.securityfocus.com/bid/102099 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13858
https://notcve.org/view.php?id=CVE-2017-13858
08 Dec 2017 — An issue was discovered in certain Apple products. macOS before 10.13.2 is affected. The issue involves the "IOKit" component. It allows attackers to execute arbitrary code in a privileged context via a crafted app. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.2. • http://www.securityfocus.com/bid/102099 • CWE-20: Improper Input Validation •
CVE-2017-13875 – Apple macOS - Kernel Code Execution due to Lack of Bounds Checking in AppleIntelCapriController::GetLinkConfig
https://notcve.org/view.php?id=CVE-2017-13875
08 Dec 2017 — An issue was discovered in certain Apple products. macOS before 10.13.2 is affected. The issue involves the "Intel Graphics Driver" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (out-of-bounds read) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.2. • https://www.exploit-db.com/exploits/43327 • CWE-125: Out-of-bounds Read •
CVE-2017-13876 – Apple XNU Kernel - Memory Corruption due to Integer Overflow in __offsetof Usage in posix_spawn on 32-bit Platforms
https://notcve.org/view.php?id=CVE-2017-13876
08 Dec 2017 — An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de iOS anteriores a la 11.2, las versiones de macOS anteriores a la 10.13.2, las ve... • https://www.exploit-db.com/exploits/43325 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13868 – Apple macOS High Sierra 10.13 - 'ctl_ctloutput-leak' Information Leak
https://notcve.org/view.php?id=CVE-2017-13868
08 Dec 2017 — An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de iOS anteriores a la 11.2, las versiones de macOS anteriores a la 10.13.2, las versiones de tvOS anteriores a la 11.2 y las versiones de... • https://www.exploit-db.com/exploits/44234 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-13869 – Apple macOS - 'getrusage' Stack Leak Through struct Padding
https://notcve.org/view.php?id=CVE-2017-13869
08 Dec 2017 — An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de iOS anteriores a la 11.2, las versiones de macOS anteriores a la 10.13.2, las versiones de tvOS anteriores a la 11.2 y las versiones de... • https://www.exploit-db.com/exploits/43319 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-13867 – Apple macOS/iOS - Kernel Double Free due to Incorrect API Usage in Flow Divert Socket Option Handling
https://notcve.org/view.php?id=CVE-2017-13867
08 Dec 2017 — An issue was discovered in certain Apple products. iOS before 11.2 is affected. macOS before 10.13.2 is affected. tvOS before 11.2 is affected. watchOS before 4.2 is affected. The issue involves the "Kernel" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de iOS anteriores a la 11.2, las versiones de macOS anteriores a la 10.13.2, las ve... • https://www.exploit-db.com/exploits/43328 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •