Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tvos vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2015-7104
WebKit in Apple Safari prior to 9.0.2 and tvOS prior to 9.1 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.
Apple Tvos
Apple Safari
6.8
CVSSv2
CVE-2016-4586
WebKit in Apple Safari prior to 9.1.2 and tvOS prior to 9.2.2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
Apple Tvos
Apple Safari
4.3
CVSSv2
CVE-2021-30962
A memory initialization issue was addressed with improved memory handling. This issue is fixed in tvOS 15.2, macOS Big Sur 11.6.2. Parsing a maliciously crafted audio file may lead to disclosure of user information.
Apple Tvos
Apple Macos
4.3
CVSSv2
CVE-2018-4381
A resource exhaustion issue was addressed with improved input validation. This issue is fixed in tvOS 12.1, iOS 12.1. Processing a maliciously crafted message may lead to a denial of service.
Apple Iphone Os
Apple Tvos
6.9
CVSSv2
CVE-2015-1086
The Audio Drivers subsystem in Apple iOS prior to 8.3 and Apple TV prior to 7.2 does not properly validate IOKit object metadata, which allows malicious users to execute arbitrary code in a privileged context via a crafted app.
Apple Tvos
Apple Iphone Os
1.9
CVSSv2
CVE-2015-1097
IOMobileFramebuffer in Apple iOS prior to 8.3 and Apple TV prior to 7.2 allows malicious users to obtain sensitive information about kernel memory via a crafted app.
Apple Iphone Os
Apple Tvos
9.3
CVSSv2
CVE-2015-7055
AppleMobileFileIntegrity in Apple iOS prior to 9.2 and tvOS prior to 9.1 does not prevent changes to access-control structures, which allows malicious users to execute arbitrary code in a privileged context via a crafted app.
Apple Tvos
Apple Iphone Os
9.3
CVSSv2
CVE-2015-7079
dyld in Apple iOS prior to 9.2 and tvOS prior to 9.1 mishandles segment validation, which allows malicious users to execute arbitrary code in a privileged context via a crafted app.
Apple Tvos
Apple Iphone Os
2 Github repositories
5
CVSSv2
CVE-2014-4496
The mach_port_kobject interface in the kernel in Apple iOS prior to 8.1.3 and Apple TV prior to 7.0.3 does not properly restrict kernel-address and heap-permutation information, which makes it easier for malicious users to bypass the ASLR protection mechanism via a crafted app.
Apple Iphone Os
Apple Tvos
1 Article
10
CVSSv2
CVE-2014-4480
Directory traversal vulnerability in afc in AppleFileConduit in Apple iOS prior to 8.1.3 and Apple TV prior to 7.0.3 allows malicious users to access unintended filesystem locations by creating a symlink.
Apple Iphone Os
Apple Tvos
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-33545
CVE-2024-35725
CVE-2024-32704
overflow
file upload
CVE-2024-0230
CVE-2024-32705
CVE-2024-23692
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »