This CPE summary could be partial or incomplete. Please contact us for a detailed listing.

Summary

Detail
Vendor Apple First view 2007-06-25
Product Iphone Os Last view 2024-03-28
Version Type
Update  
Edition  
Language  
Sofware Edition  
Target Software  
Target Hardware  
Other  

Activity : Overall

COMMON PLATFORM ENUMERATION: Repartition per Version

CPE Name Affected CVE
cpe:2.3:o:apple:iphone_os:1.0.1:*:*:*:*:*:*:* 3185
cpe:2.3:o:apple:iphone_os:1.0.2:*:*:*:*:*:*:* 3185
cpe:2.3:o:apple:iphone_os:1.1.1:*:*:*:*:*:*:* 3184
cpe:2.3:o:apple:iphone_os:1.1.2:*:*:*:*:*:*:* 3183
cpe:2.3:o:apple:iphone_os:1.0.0:*:*:*:*:*:*:* 3182
cpe:2.3:o:apple:iphone_os:2.0.2:*:*:*:*:*:*:* 3181
cpe:2.3:o:apple:iphone_os:2.0.1:*:*:*:*:*:*:* 3181
cpe:2.3:o:apple:iphone_os:2.1:*:*:*:*:*:*:* 3181
cpe:2.3:o:apple:iphone_os:1.1.3:*:*:*:*:*:*:* 3181
cpe:2.3:o:apple:iphone_os:2.0:*:*:*:*:*:*:* 3181
cpe:2.3:o:apple:iphone_os:1.1.4:*:*:*:*:*:*:* 3181
cpe:2.3:o:apple:iphone_os:1.1.5:*:*:*:*:*:*:* 3180
cpe:2.3:o:apple:iphone_os:1.1.0:*:*:*:*:*:*:* 3173
cpe:2.3:o:apple:iphone_os:2.0.0:*:*:*:*:*:*:* 3172
cpe:2.3:o:apple:iphone_os:2.1.1:*:*:*:*:*:*:* 3171
cpe:2.3:o:apple:iphone_os:2.2.1:*:*:*:*:*:*:* 3171
cpe:2.3:o:apple:iphone_os:3.1:*:*:*:*:*:*:* 3171
cpe:2.3:o:apple:iphone_os:2.2:*:*:*:*:*:*:* 3171
cpe:2.3:o:apple:iphone_os:1.0:*:*:*:*:*:*:* 3170
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:* 3167
cpe:2.3:o:apple:iphone_os:1.1:*:*:*:*:*:*:* 3166
cpe:2.3:o:apple:iphone_os:3.0:-:iphone:*:*:*:*:* 3165
cpe:2.3:o:apple:iphone_os:3.2.1:*:*:*:*:*:*:* 3164
cpe:2.3:o:apple:iphone_os:3.1:-:ipodtouch:*:*:*:*:* 3163
cpe:2.3:o:apple:iphone_os:3.1:-:iphone:*:*:*:*:* 3163
cpe:2.3:o:apple:iphone_os:3.2.2:*:*:*:*:*:*:* 3162
cpe:2.3:o:apple:iphone_os:1.1.3:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:3.1.2:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:3.1.3:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.0:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.0.2:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:2.0.0:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:3.2:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:3.2:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.3:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:-:*:*:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.4:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.4:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:2.0.2:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:3.0:*:*:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.2:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:2.0.1:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.0.1:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.1:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:3.0.1:*:*:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.0:-:ipodtouch:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:1.1.2:-:iphone:*:*:*:*:* 3160
cpe:2.3:o:apple:iphone_os:2.1:-:ipodtouch:*:*:*:*:* 3159
cpe:2.3:o:apple:iphone_os:1.1.5:-:ipodtouch:*:*:*:*:* 3159
cpe:2.3:o:apple:iphone_os:1.1.5:-:iphone:*:*:*:*:* 3159

Related : CVE

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
  Date Alert Description
7.5 2024-03-28 CVE-2023-42962

This issue was addressed with improved checks This issue is fixed in iOS 17.2 and iPadOS 17.2, iOS 16.7.3 and iPadOS 16.7.3. A remote attacker may be able to cause a denial-of-service.

6.5 2024-03-28 CVE-2023-42956

The issue was addressed with improved memory handling. This issue is fixed in Safari 17.2, iOS 17.2 and iPadOS 17.2, macOS Sonoma 14.2. Processing web content may lead to a denial-of-service.

8.8 2024-03-28 CVE-2023-42950

A use after free issue was addressed with improved memory management. This issue is fixed in Safari 17.2, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. Processing maliciously crafted web content may lead to arbitrary code execution.

8.6 2024-03-28 CVE-2023-42947

A path handling issue was addressed with improved validation. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to break out of its sandbox.

5.5 2024-03-28 CVE-2023-42936

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to access user-sensitive data.

5.5 2024-03-28 CVE-2023-42896

An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, macOS Sonoma 14.2. An app may be able to modify protected parts of the file system.

5.5 2024-03-28 CVE-2023-42893

A permissions issue was addressed by removing vulnerable code and adding additional checks. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, tvOS 17.2, watchOS 10.2, macOS Sonoma 14.2. An app may be able to access protected user data.

5.9 2024-03-08 CVE-2024-23277

The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.4, iOS 17.4 and iPadOS 17.4. An attacker in a privileged network position may be able to inject keystrokes by spoofing a keyboard.

4.3 2024-03-08 CVE-2024-23273

This issue was addressed through improved state management. This issue is fixed in Safari 17.4, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. Private Browsing tabs may be accessed without authentication.

7.8 2024-03-08 CVE-2024-23270

The issue was addressed with improved memory handling. This issue is fixed in macOS Monterey 12.7.4, macOS Ventura 13.6.5, macOS Sonoma 14.4, iOS 17.4 and iPadOS 17.4, tvOS 17.4. An app may be able to execute arbitrary code with kernel privileges.

7.8 2024-03-05 CVE-2024-23296

A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 17.4 and iPadOS 17.4. An attacker with arbitrary kernel read and write capability may be able to bypass kernel memory protections. Apple is aware of a report that this issue may have been exploited.

7.8 2024-03-05 CVE-2024-23225

A memory corruption issue was addressed with improved validation. This issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4. An attacker with arbitrary kernel read and write capability may be able to bypass kernel memory protections. Apple is aware of a report that this issue may have been exploited.

6.2 2024-01-23 CVE-2024-23223

A privacy issue was addressed with improved handling of files. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to access sensitive user data.

8.8 2024-01-23 CVE-2024-23222

A type confusion issue was addressed with improved checks. This issue is fixed in iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, tvOS 17.3. Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited.

6.2 2024-01-23 CVE-2024-23219

The issue was addressed with improved authentication. This issue is fixed in iOS 17.3 and iPadOS 17.3. Stolen Device Protection may be unexpectedly disabled.

5.9 2024-01-23 CVE-2024-23218

A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An attacker may be able to decrypt legacy RSA PKCS#1 v1.5 ciphertexts without having the private key.

3.3 2024-01-23 CVE-2024-23217

A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, iOS 17.3 and iPadOS 17.3. An app may be able to bypass certain Privacy preferences.

5.5 2024-01-23 CVE-2024-23215

An issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to access user-sensitive data.

8.8 2024-01-23 CVE-2024-23214

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, iOS 17.3 and iPadOS 17.3. Processing maliciously crafted web content may lead to arbitrary code execution.

8.8 2024-01-23 CVE-2024-23213

The issue was addressed with improved memory handling. This issue is fixed in watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, Safari 17.3. Processing web content may lead to arbitrary code execution.

7.8 2024-01-23 CVE-2024-23212

The issue was addressed with improved memory handling. This issue is fixed in watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, macOS Ventura 13.6.4, macOS Monterey 12.7.3. An app may be able to execute arbitrary code with kernel privileges.

3.3 2024-01-23 CVE-2024-23211

A privacy issue was addressed with improved handling of user preferences. This issue is fixed in watchOS 10.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, iOS 16.7.5 and iPadOS 16.7.5, Safari 17.3. A user's private browsing activity may be visible in Settings.

3.3 2024-01-23 CVE-2024-23210

This issue was addressed with improved redaction of sensitive information. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to view a user's phone number in system logs.

7.8 2024-01-23 CVE-2024-23208

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.3, watchOS 10.3, tvOS 17.3, iOS 17.3 and iPadOS 17.3. An app may be able to execute arbitrary code with kernel privileges.

5.5 2024-01-23 CVE-2024-23207

This issue was addressed with improved redaction of sensitive information. This issue is fixed in watchOS 10.3, iOS 17.3 and iPadOS 17.3, macOS Sonoma 14.3, macOS Ventura 13.6.4, macOS Monterey 12.7.3. An app may be able to access sensitive user data.

CWE : Common Weakness Enumeration

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
%idName
29% (759) CWE-119 Failure to Constrain Operations within the Bounds of a Memory Buffer
13% (334) CWE-787 Out-of-bounds Write
8% (206) CWE-20 Improper Input Validation
8% (205) CWE-200 Information Exposure
6% (174) CWE-416 Use After Free
6% (164) CWE-125 Out-of-bounds Read
3% (92) CWE-264 Permissions, Privileges, and Access Controls
2% (66) CWE-79 Failure to Preserve Web Page Structure ('Cross-site Scripting')
2% (63) CWE-399 Resource Management Errors
2% (59) CWE-362 Race Condition
1% (43) CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflo...
1% (31) CWE-254 Security Features
1% (26) CWE-190 Integer Overflow or Wraparound
0% (18) CWE-476 NULL Pointer Dereference
0% (18) CWE-310 Cryptographic Issues
0% (18) CWE-59 Improper Link Resolution Before File Access ('Link Following')
0% (17) CWE-665 Improper Initialization
0% (15) CWE-287 Improper Authentication
0% (14) CWE-295 Certificate Issues
0% (13) CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
0% (13) CWE-189 Numeric Errors
0% (12) CWE-284 Access Control (Authorization) Issues
0% (10) CWE-255 Credentials Management
0% (10) CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path ...
0% (10) CWE-19 Data Handling

CAPEC : Common Attack Pattern Enumeration & Classification

id Name
CAPEC-59 Session Credential Falsification through Prediction
CAPEC-112 Brute Force
CAPEC-281 Analytic Attacks

Oval Markup Language : Definitions

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
OvalID Name
oval:org.mitre.oval:def:9812 libxml2 2.6.32 and earlier does not properly detect recursion during entity e...
oval:org.mitre.oval:def:7968 DSA-1631 libxml2 -- denial of service
oval:org.mitre.oval:def:6496 Libxml2 Recursive Entity Evaluation Bug Lets Remote Users Deny Service
oval:org.mitre.oval:def:19740 DSA-1631-1 libxml2 - denial of service
oval:org.mitre.oval:def:17756 USN-640-1 -- libxml2 vulnerability
oval:org.mitre.oval:def:17731 USN-644-1 -- libxml2 vulnerabilities
oval:org.mitre.oval:def:21731 ELSA-2008:0836: libxml2 security update (Moderate)
oval:org.mitre.oval:def:29241 RHSA-2008:0836 -- libxml2 security update (Moderate)
oval:org.mitre.oval:def:17108 USN-676-1 -- webkit vulnerability
oval:org.mitre.oval:def:8076 DSA-1654 libxml2 -- buffer overflow
oval:org.mitre.oval:def:6103 Libxml2 Heap Overflow in xmlParseAttValueComplex() Lets Remote Users Execute ...
oval:org.mitre.oval:def:18505 DSA-1654-1 libxml2 - execution of arbitrary code
oval:org.mitre.oval:def:13882 USN-815-1 -- libxml2 vulnerabilities
oval:org.mitre.oval:def:11760 Heap-based buffer overflow in the xmlParseAttValueComplex function in parser....
oval:org.mitre.oval:def:21739 ELSA-2008:0884: libxml2 security update (Important)
oval:org.mitre.oval:def:29030 RHSA-2008:0884 -- libxml2 security update (Important)
oval:org.mitre.oval:def:6557 DSA-1750 libpng -- several vulnerabilities
oval:org.mitre.oval:def:6458 Libpng Library Uninitialized Pointer Arrays Memory Corruption Vulnerability
oval:org.mitre.oval:def:13613 DSA-1750-1 libpng -- several
oval:org.mitre.oval:def:13052 USN-730-1 -- libpng vulnerabilities
oval:org.mitre.oval:def:10316 The PNG reference library (aka libpng) before 1.0.43, and 1.2.x before 1.2.35...
oval:org.mitre.oval:def:22744 ELSA-2009:0333: libpng security update (Moderate)
oval:org.mitre.oval:def:29196 RHSA-2009:0333 -- libpng security update (Moderate)
oval:org.mitre.oval:def:8224 DSA-1784 freetype -- integer overflows
oval:org.mitre.oval:def:13797 USN-767-1 -- freetype vulnerability

Open Source Vulnerability Database (OSVDB)

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
78547 Google Chrome Tree Builder Remote Overflow
78545 Google Chrome Use-after-free DOM Handling Unspecified Remote DoS
78544 Google Chrome Use-after-free DOM Selections Unspecified Remote DoS
78148 Google Chrome libxml2 parser.c xmlStringLenDecodeEntities() Function Remote O...
77715 Google Chrome Range Handling Use-after-free Remote Code Execution
77711 Google Chrome CSS Property Array Unspecified Remote Memory Corruption
77710 Google Chrome SVG Parsing Out-of-bounds Read Remote DoS
77037 Google Chrome Editing Unspecified Use-after-free Remote Issue
77016 Apple iOS Kernel mmap System Call Flag Combination Verification Remote Code E...
77015 Apple iOS libinfo DNS Name Lookup hostname Handling Lookup Result Spoofing
77014 Apple iOS CoreGraphics Component src/cid/cidload.c FreeType CID-keyed Type 1 ...
77013 Apple iOS for iPad 2 Smart Cover User Data Disclosure
76559 Google Chrome Use-after-free Plug-ins and Editing Remote Code Execution
76558 Google Chrome Javascript URI Cookie Disclosure
76556 Google Chrome Multiple Use-after-free Stale Style Sheet Handling Remote Code ...
76552 Google Chrome Multiple Unspecified Same Origin Policy Bypass
76545 Google Chrome History Handling URL Bar Spoofing
76354 Apple iOS WiFi Credentials Insecure Local File Disclosure
76353 Apple iOS WebKit Inactive DOM Window Handling XSS
76335 Apple iOS UIKit Alerts Maximum Text Layout Length Limit Website tel: URI Hand...
76334 Apple iOS Safari HTTP Content-Disposition Header Weakness Website File Handli...
76333 Apple iOS OfficeImport Excel File Handling Overflow
76332 Apple iOS OfficeImport Word File Handling Overflow
76331 Apple iOS Settings Parental Restrictions Passcode Plaintext Disclosure
76330 Apple iOS Settings Non-English Display Weakness

ExploitDB Exploits

id Description
35440 Mac OS X IOKit Keyboard Driver Root Privilege Escalation
32333 iOS 7 - Kernel Mode Memory Corruption
28081 Apple Safari 6.0.1 for iOS 6.0 and OS X 10.7/8 - Heap Buffer Overflow
14967 Webkit (Apple Safari < 4.1.2/5.0.2 & Google Chrome < 5.0.375.125) M...
14727 Foxit Reader <= 4.0 pdf Jailbreak Exploit
14422 libpng <= 1.4.2 Denial of Service Vulnerability
9160 Multiple Web Browsers Denial of Service Exploit (1 bug to rule them all)
8798 Safari RSS feed:// Buffer Overflow via libxml2 Exploit PoC

OpenVAS Exploits

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
2012-12-14 Name : SuSE Update for Chromium openSUSE-SU-2012:1637-1 (Chromium)
File : nvt/gb_suse_2012_1637_1.nasl
2012-12-13 Name : SuSE Update for update openSUSE-SU-2012:0374-1 (update)
File : nvt/gb_suse_2012_0374_1.nasl
2012-12-13 Name : SuSE Update for update openSUSE-SU-2012:0466-1 (update)
File : nvt/gb_suse_2012_0466_1.nasl
2012-12-13 Name : SuSE Update for update openSUSE-SU-2012:0656-1 (update)
File : nvt/gb_suse_2012_0656_1.nasl
2012-12-13 Name : SuSE Update for chromium openSUSE-SU-2012:1215-1 (chromium)
File : nvt/gb_suse_2012_1215_1.nasl
2012-12-13 Name : SuSE Update for update openSUSE-SU-2012:1376-1 (update)
File : nvt/gb_suse_2012_1376_1.nasl
2012-12-06 Name : Ubuntu Update for libxml2 USN-1656-1
File : nvt/gb_ubuntu_USN_1656_1.nasl
2012-12-04 Name : Debian Security Advisory DSA 2580-1 (libxml2)
File : nvt/deb_2580_1.nasl
2012-12-04 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium24.nasl
2012-12-04 Name : CentOS Update for libxml2 CESA-2012:1512 centos5
File : nvt/gb_CESA-2012_1512_libxml2_centos5.nasl
2012-12-04 Name : CentOS Update for libxml2 CESA-2012:1512 centos6
File : nvt/gb_CESA-2012_1512_libxml2_centos6.nasl
2012-12-04 Name : RedHat Update for libxml2 RHSA-2012:1512-01
File : nvt/gb_RHSA-2012_1512-01_libxml2.nasl
2012-12-04 Name : Google Chrome Multiple Vulnerabilities-01 Dec2012 (Linux)
File : nvt/gb_google_chrome_mult_vuln01_dec12_lin.nasl
2012-12-04 Name : Google Chrome Multiple Vulnerabilities-01 Dec2012 (Mac OS X)
File : nvt/gb_google_chrome_mult_vuln01_dec12_macosx.nasl
2012-12-04 Name : Google Chrome Multiple Vulnerabilities-01 Dec2012 (Windows)
File : nvt/gb_google_chrome_mult_vuln01_dec12_win.nasl
2012-12-04 Name : Mandriva Update for libxml2 MDVSA-2012:176 (libxml2)
File : nvt/gb_mandriva_MDVSA_2012_176.nasl
2012-11-02 Name : Apple Safari Multiple Vulnerabilities (APPLE-SA-2012-09-19-3)
File : nvt/gb_apple_safari_mult_vuln_nov12_macosx.nasl
2012-10-26 Name : Ubuntu Update for webkit USN-1617-1
File : nvt/gb_ubuntu_USN_1617_1.nasl
2012-10-22 Name : Gentoo Security Advisory GLSA 201210-07 (chromium)
File : nvt/glsa_201210_07.nasl
2012-10-15 Name : Google Chrome Multiple Vulnerabilities-02 Oct12 (Linux)
File : nvt/gb_google_chrome_mult_vuln02_oct12_lin.nasl
2012-10-15 Name : Google Chrome Multiple Vulnerabilities-02 Oct12 (Mac OS X)
File : nvt/gb_google_chrome_mult_vuln02_oct12_macosx.nasl
2012-10-15 Name : Google Chrome Multiple Vulnerabilities-02 Oct12 (Windows)
File : nvt/gb_google_chrome_mult_vuln02_oct12_win.nasl
2012-10-13 Name : Debian Security Advisory DSA 2555-1 (libxslt)
File : nvt/deb_2555_1.nasl
2012-10-13 Name : FreeBSD Ports: chromium
File : nvt/freebsd_chromium20.nasl
2012-10-12 Name : Mandriva Update for libxslt MDVSA-2012:164 (libxslt)
File : nvt/gb_mandriva_MDVSA_2012_164.nasl

Information Assurance Vulnerability Management (IAVM)

id Description
2015-A-0222 Multiple Security Vulnerabilities in Apple iOS
Severity: Category I - VMSKEY: V0061471
2015-A-0199 Multiple Vulnerabilities in Apple Mac OS X
Severity: Category I - VMSKEY: V0061337
2015-A-0158 Multiple Vulnerabilities in Oracle Java SE
Severity: Category I - VMSKEY: V0061089
2014-B-0083 Multiple Vulnerabilities in Apple iOS
Severity: Category I - VMSKEY: V0052903
2014-B-0048 Multiple Security Vulnerabilities in Apple iOS
Severity: Category I - VMSKEY: V0050015
2014-A-0059 Apple Mac OS X Security Update 2014-002
Severity: Category I - VMSKEY: V0049741
2014-B-0024 Multiple Security Vulnerabilities in Apple iOS
Severity: Category I - VMSKEY: V0046157
2014-B-0017 Apple iOS Security Bypass Vulnerability
Severity: Category I - VMSKEY: V0044529
2014-A-0030 Apple Mac OS X Security Update 2014-001
Severity: Category I - VMSKEY: V0044547
2013-A-0179 Apple Mac OS X Security Update 2013-004
Severity: Category I - VMSKEY: V0040373
2013-A-0031 Multiple Security Vulnerabilities in VMware ESX 4.1 and ESXi 4.1
Severity: Category I - VMSKEY: V0036787
2012-A-0153 Multiple Vulnerabilities in VMware ESX 4.0 and ESXi 4.0
Severity: Category I - VMSKEY: V0033884
2012-A-0148 Multiple Vulnerabilities in VMware ESXi 4.1 and ESX 4.1
Severity: Category I - VMSKEY: V0033794
2012-A-0073 Multiple Vulnerabilities in VMware ESXi 4.1 and ESX 4.1
Severity: Category I - VMSKEY: V0032171
2009-T-0049 Multiple Vulnerabilities in libxml2
Severity: Category I - VMSKEY: V0019911
2008-B-0078 Multiple Vulnerabilities in VMware
Severity: Category I - VMSKEY: V0017874

Snort® IPS/IDS

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
Date Description
2020-11-19 Apple Safari WebKit Webcore SVGAnimateElementBase use after free attempt
RuleID : 56044 - Type : BROWSER-WEBKIT - Revision : 1
2020-11-19 Apple Safari WebKit Webcore SVGAnimateElementBase use after free attempt
RuleID : 56043 - Type : BROWSER-WEBKIT - Revision : 1
2020-11-18 Apple Safari WebKit JSPropertyNameEnumeration type confusion attempt
RuleID : 56009 - Type : BROWSER-WEBKIT - Revision : 1
2020-11-18 Apple Safari WebKit JSPropertyNameEnumeration type confusion attempt
RuleID : 56008 - Type : BROWSER-WEBKIT - Revision : 1
2020-10-22 Apple Safari WebKit HTMLFrameElementBase isURLAllowed Subframe exploit attempt
RuleID : 55799 - Type : FILE-OTHER - Revision : 1
2020-10-22 Apple Safari WebKit HTMLFrameElementBase isURLAllowed Subframe exploit attempt
RuleID : 55798 - Type : FILE-OTHER - Revision : 1
2020-10-06 WebKit AudioArray allocate out of bounds access attempt
RuleID : 55013 - Type : BROWSER-WEBKIT - Revision : 1
2020-10-06 WebKit AudioArray allocate out of bounds access attempt
RuleID : 55012 - Type : BROWSER-WEBKIT - Revision : 1
2020-09-02 WebKit JIT compiler common subexpression elimination out of bounds access att...
RuleID : 54666 - Type : BROWSER-WEBKIT - Revision : 2
2020-09-02 WebKit JIT compiler common subexpression elimination out of bounds access att...
RuleID : 54665 - Type : BROWSER-WEBKIT - Revision : 2
2020-12-05 TRUFFLEHUNTER TALOS-2020-1094 attack attempt
RuleID : 54309 - Type : FILE-OTHER - Revision : 1
2020-12-05 TRUFFLEHUNTER TALOS-2020-1094 attack attempt
RuleID : 54308 - Type : FILE-OTHER - Revision : 1
2020-06-13 WebKit use-after-free remote code execution attempt
RuleID : 53976 - Type : BROWSER-WEBKIT - Revision : 1
2020-04-21 Apple Safari WebKit JavaScript engine type confusion attempt
RuleID : 53474 - Type : BROWSER-WEBKIT - Revision : 1
2020-04-21 Apple Safari WebKit JavaScript engine type confusion attempt
RuleID : 53473 - Type : BROWSER-WEBKIT - Revision : 1
2020-03-19 Apple Safari WebKit cached page memory corruption attempt
RuleID : 53122 - Type : BROWSER-WEBKIT - Revision : 1
2020-03-19 Apple Safari WebKit cached page memory corruption attempt
RuleID : 53121 - Type : BROWSER-WEBKIT - Revision : 1
2020-03-17 Apple Safari Webkit WebCore memory corruption attempt
RuleID : 53101 - Type : BROWSER-WEBKIT - Revision : 1
2020-03-17 Apple Safari Webkit WebCore memory corruption attempt
RuleID : 53100 - Type : BROWSER-WEBKIT - Revision : 1
2020-01-21 Apple Webkit updateMinimumColumnHeight use-after-free attempt
RuleID : 52486 - Type : BROWSER-WEBKIT - Revision : 1
2020-01-21 Apple Webkit updateMinimumColumnHeight use-after-free attempt
RuleID : 52485 - Type : BROWSER-WEBKIT - Revision : 1
2020-01-03 Apple Safari WebKit out-of-bounds read attempt
RuleID : 52342 - Type : BROWSER-WEBKIT - Revision : 1
2020-01-03 Apple Safari WebKit out-of-bounds read attempt
RuleID : 52341 - Type : BROWSER-WEBKIT - Revision : 1
2020-01-03 Apple Safari WebKit memory corruption attempt
RuleID : 52316 - Type : BROWSER-WEBKIT - Revision : 1
2020-01-03 Apple Safari WebKit memory corruption attempt
RuleID : 52315 - Type : BROWSER-WEBKIT - Revision : 1

Nessus® Vulnerability Scanner

This CPE Product have more than 25 Relations. If you want to see a complete summary for this CPE, please contact us.
id Description
2019-01-16 Name: The remote database server is affected by multiple vulnerabilities
File: mariadb_10_0_37.nasl - Type: ACT_GATHER_INFO
2019-01-14 Name: The remote Debian host is missing a security update.
File: debian_DLA-1633.nasl - Type: ACT_GATHER_INFO
2019-01-11 Name: The remote device is missing a vendor-supplied security patch.
File: juniper_jsa10916.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-118b9abf99.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-1a8582a7ee.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-242f6c1a41.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-499f2dbc96.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-509fc4a5c8.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-55b875c1ac.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-97c58e29e4.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-a1f37d2f08.nasl - Type: ACT_GATHER_INFO
2019-01-03 Name: The remote Fedora host is missing a security update.
File: fedora_2018-e2e8a07a01.nasl - Type: ACT_GATHER_INFO
2018-12-21 Name: The remote Apple TV device is affected by multiple vulnerabilities.
File: appletv_12_1_1.nasl - Type: ACT_GATHER_INFO
2018-12-21 Name: The remote host is missing a macOS update that fixes multiple security vulner...
File: macos_10_14_2.nasl - Type: ACT_GATHER_INFO
2018-12-21 Name: The remote host is missing a macOS or Mac OS X security update that fixes mul...
File: macosx_SecUpd2018-006.nasl - Type: ACT_GATHER_INFO
2018-12-21 Name: The remote host is missing a macOS security update that fixes multiple vulner...
File: macosx_SecUpd_10_13_6_2018-003.nasl - Type: ACT_GATHER_INFO
2018-12-19 Name: An application installed on remote host is affected by multiple vulnerabilities
File: itunes_12_9_2.nasl - Type: ACT_GATHER_INFO
2018-12-07 Name: The remote Amazon Linux AMI host is missing a security update.
File: ala_ALAS-2018-1114.nasl - Type: ACT_GATHER_INFO
2018-12-07 Name: The remote Amazon Linux AMI host is missing a security update.
File: ala_ALAS-2018-1115.nasl - Type: ACT_GATHER_INFO
2018-12-07 Name: The remote Amazon Linux AMI host is missing a security update.
File: ala_ALAS-2018-1116.nasl - Type: ACT_GATHER_INFO
2018-12-07 Name: A web browser installed on the remote macOS or Mac OS X host is affected by m...
File: macosx_Safari12_0_2.nasl - Type: ACT_GATHER_INFO
2018-12-03 Name: The remote Gentoo host is missing one or more security-related patches.
File: gentoo_GLSA-201812-04.nasl - Type: ACT_GATHER_INFO
2018-11-27 Name: The remote Fedora host is missing a security update.
File: fedora_2018-192148f4ff.nasl - Type: ACT_GATHER_INFO
2018-11-13 Name: The remote Debian host is missing a security update.
File: debian_DLA-1573.nasl - Type: ACT_GATHER_INFO
2018-11-06 Name: The remote Slackware host is missing a security update.
File: Slackware_SSA_2018-309-01.nasl - Type: ACT_GATHER_INFO