Skip to main content

Vendor/product archive

apple / ipod_touch CVEs

Beta · best-effort

58 CVEs tagged to apple / ipod_touch10 Critical, 6 High, 34 Medium, 8 Low, 0 Unrated.

CVE-2010-1817

Published Sep 9, 2010

Buffer overflow in ImageIO in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (application crash)…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1813

Published Sep 9, 2010

WebKit in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1811

Published Sep 9, 2010

ImageIO in Apple iOS before 4.1 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application cras…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1810

Published Sep 9, 2010

FaceTime in Apple iOS before 4.1 on the iPhone and iPod touch does not properly handle invalid X.509 certificates, which allows man-in-the-middle attackers to redirect calls via a…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1809

Published Sep 9, 2010

The Accessibility component in Apple iOS before 4.1 on the iPhone and iPod touch does not perform the expected VoiceOver announcement associated with the location services icon, w…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2010-1775

Published Jun 22, 2010

Race condition in Passcode Lock in Apple iOS before 4 on the iPhone and iPod touch allows physically proximate attackers to bypass intended passcode requirements, and pair a locke…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2010-1757

Published Jun 22, 2010

WebKit in Apple iOS before 4 on the iPhone and iPod touch does not enforce the expected boundary restrictions on content display by an IFRAME element, which allows remote attacker…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1756

Published Jun 22, 2010

The Settings application in Apple iOS before 4 on the iPhone and iPod touch does not properly report the wireless network that is in use, which might make it easier for remote att…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1755

Published Jun 22, 2010

Safari in Apple iOS before 4 on the iPhone and iPod touch does not properly implement the Accept Cookies preference, which makes it easier for remote web servers to track users vi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1754

Published Jun 22, 2010

Passcode Lock in Apple iOS before 4 on the iPhone and iPod touch does not properly handle alert-based unlocks in conjunction with subsequent Remote Lock operations through MobileM…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1753

Published Jun 22, 2010

ImageIO in Apple iOS before 4 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash)…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1752

Published Jun 22, 2010

Stack-based buffer overflow in CFNetwork in Apple iOS before 4 on the iPhone and iPod touch allows remote attackers to execute arbitrary code or cause a denial of service (applica…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1751

Published Jun 22, 2010

Application Sandbox in Apple iOS before 4 on the iPhone and iPod touch does not prevent photo-library access, which might allow remote attackers to obtain location information via…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1407

Published Jun 22, 2010

WebKit in Apple iOS before 4 on the iPhone and iPod touch does not properly implement the history.replaceState method in certain situations involving IFRAME elements, which allows…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2010-1181

Published Mar 29, 2010

Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long string in a M…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2206

Published Sep 10, 2009

Multiple heap-based buffer overflows in the AudioCodecs library in the CoreAudio component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, allow remote a…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2009-2199

Published Aug 12, 2009

Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, and other platforms, allows remo…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 58 CVEsPage 1 of 3