CVE-2017-7157
https://notcve.org/view.php?id=CVE-2017-7157
An issue was discovered in certain Apple products. iOS before 11.2 is affected. Safari before 11.0.2 is affected. iCloud before 7.2 on Windows is affected. iTunes before 12.7.2 on Windows is affected. tvOS before 11.2 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • http://www.securityfocus.com/bid/102181 http://www.securitytracker.com/id/1040012 http://www.securitytracker.com/id/1040013 https://security.gentoo.org/glsa/201801-09 https://support.apple.com/HT208324 https://support.apple.com/HT208326 https://support.apple.com/HT208327 https://support.apple.com/HT208328 https://support.apple.com/HT208334 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13797 – WebKit - 'WebCore::PositionIterator::decrement' Use-After-Free
https://notcve.org/view.php?id=CVE-2017-13797
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43168 https://support.apple.com/HT208219 https://support.apple.com/HT208222 https://support.apple.com/HT208223 https://support.apple.com/HT208224 https://support.apple.com/HT208225 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-13789
https://notcve.org/view.php?id=CVE-2017-13789
An issue was discovered in certain Apple products. Safari before 11.0.1 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the address bar via a crafted web site. Se ha descubierto un problema en algunos productos Apple.. • http://www.securitytracker.com/id/1039706 https://support.apple.com/HT208223 • CWE-20: Improper Input Validation •
CVE-2017-13790
https://notcve.org/view.php?id=CVE-2017-13790
An issue was discovered in certain Apple products. Safari before 11.0.1 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the address bar via a crafted web site. Se ha descubierto un problema en algunos productos Apple.. • http://www.securitytracker.com/id/1039706 https://support.apple.com/HT208223 • CWE-20: Improper Input Validation •
CVE-2017-13785 – WebKit - 'WebCore::RenderText::localCaretRect' Out-of-Bounds Read
https://notcve.org/view.php?id=CVE-2017-13785
An issue was discovered in certain Apple products. iOS before 11.1 is affected. Safari before 11.0.1 is affected. iCloud before 7.1 on Windows is affected. iTunes before 12.7.1 on Windows is affected. tvOS before 11.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. Se ha descubierto un problema en algunos productos Apple. • https://www.exploit-db.com/exploits/43170 http://www.securitytracker.com/id/1039703 https://security.gentoo.org/glsa/201712-01 https://support.apple.com/HT208219 https://support.apple.com/HT208222 https://support.apple.com/HT208223 https://support.apple.com/HT208224 https://support.apple.com/HT208225 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •