CVE-2017-13799 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13799
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. macOS before 10.13.1 is affected. tvOS before 11.1 is affected. watchOS before 4.1 is affected. The issue involves the "Kernel" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de iOS anteriores a la 11.1, las versiones de macOS anterior... • http://www.securitytracker.com/id/1039703 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13800 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13800
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "APFS" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.1. • http://www.securitytracker.com/id/1039710 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13801 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13801
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Dictionary Widget" component. It allows attackers to read local files if pasted text is used in a search. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.1. • http://www.securitytracker.com/id/1039710 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-13804 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13804
01 Nov 2017 — An issue was discovered in certain Apple products. iOS before 11.1 is affected. macOS before 10.13.1 is affected. tvOS before 11.1 is affected. watchOS before 4.1 is affected. The issue involves the "StreamingZip" component. It allows remote attackers to write to unintended pathnames via a crafted ZIP archive. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de iOS anteriores a la 11.1, las versiones de macOS anteriores a la 10.13.1, las versiones de tvOS anteri... • http://www.securitytracker.com/id/1039703 • CWE-20: Improper Input Validation •
CVE-2017-13807 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13807
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Audio" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory consumption) via a crafted QuickTime file. Se ha descubierto un problema en algunos productos Apple. Se han visto afectadas las versiones de macOS anteriores a la 10.13.1. • http://www.securitytracker.com/id/1039710 • CWE-20: Improper Input Validation •
CVE-2017-13808 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13808
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Remote Management" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de macOS anteriores a la 10.13.1 se han visto afectadas. • http://www.securitytracker.com/id/1039710 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13809 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13809
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "AppleScript" component. It allows remote attackers to execute arbitrary code via a crafted AppleScript file that is mishandled by osadecompile. Se ha descubierto un problema en algunos productos Apple. Las versiones de macOS anteriores a la 10.13.1 se han visto afectadas. • http://www.securitytracker.com/id/1039710 • CWE-20: Improper Input Validation •
CVE-2017-13810 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13810
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "Kernel" component. It allows local users to obtain sensitive information by leveraging an error in packet counters. Se ha descubierto un problema en algunos productos Apple. Las versiones de macOS anteriores a la 10.13.1 se han visto afectadas. • http://www.securitytracker.com/id/1039710 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •
CVE-2017-13811 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13811
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "fsck_msdos" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. Se ha descubierto un problema en algunos productos Apple. Las versiones de macOS anteriores a la 10.13.1 se han visto afectadas. • http://www.securitytracker.com/id/1039710 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13812 – Apple Security Advisory 2017-10-31-2
https://notcve.org/view.php?id=CVE-2017-13812
01 Nov 2017 — An issue was discovered in certain Apple products. macOS before 10.13.1 is affected. The issue involves the "libarchive" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted archive file. Se ha descubierto un problema en algunos productos Apple. Las versiones de macOS anteriores a la 10.13.1 se han visto afectadas. • http://www.securitytracker.com/id/1039710 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •