CVE-2012-0645
|
Siri in Apple iOS before 5.1 does not properly restrict the ability of Mail.app to handle voice commands, which allows physically proximate attackers to bypass the locked state via a command that forwards an active e-mail message to an arbitrary recipient.
Published:
March 08, 2012; 05:55:04 PM -05:00
|
V2: 1.2 LOW
|
CVE-2012-0644
|
Race condition in the Passcode Lock feature in Apple iOS before 5.1 allows physically proximate attackers to bypass intended passcode requirements via a slide-to-dial gesture.
Published:
March 08, 2012; 05:55:04 PM -05:00
|
V2: 6.9 MEDIUM
|
CVE-2012-0643
|
The kernel in Apple iOS before 5.1 does not properly handle debug system calls, which allows remote attackers to bypass sandbox restrictions and execute arbitrary code via a crafted program.
Published:
March 08, 2012; 05:55:04 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0642
|
Integer underflow in Apple iOS before 5.1 allows remote attackers to execute arbitrary code or cause a denial of service (device crash) via a crafted catalog file in an HFS disk image.
Published:
March 08, 2012; 05:55:04 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0641
|
CFNetwork in Apple iOS before 5.1 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL, a different vulnerability than CVE-2011-3447.
Published:
March 08, 2012; 05:55:04 PM -05:00
|
V2: 5.0 MEDIUM
|
CVE-2012-0635
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0633
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0632
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0631
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0630
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0629
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0628
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0627
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0626
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0625
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0624
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0623
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0622
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0621
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|
CVE-2012-0620
|
WebKit, as used in Apple iOS before 5.1 and iTunes before 10.6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-03-07-1 and APPLE-SA-2012-03-07-2.
Published:
March 08, 2012; 05:55:03 PM -05:00
|
V2: 9.3 HIGH
|