Skip to content
Noroxi

libimobiledevice records

9 published records for vendor libimobiledevice.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

9 records
  • UIKit0 libplist XML xplist.c plist_from_xml xml external entity reference

    CriticalCVSS 9.8No exploitEPSS 1%

    libimobiledevice · libplistFeb 21, 2023

  • CVE-2017-5545
    37Monitor

    The main function in plistutil.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from process mem

    CriticalCVSS 9.1No exploitEPSS 4%

    libimobiledevice · libplistJan 20, 2017

  • CVE-2017-5209
    37Monitor

    The base64decode function in base64.c in libimobiledevice libplist through 1.12 allows attackers to obtain sensitive information from proces

    CriticalCVSS 9.1No exploitEPSS 3%

    libimobiledevice · libplistJan 11, 2017

  • CVE-2017-5835
    31Monitor

    libplist allows attackers to cause a denial of service (large memory allocation and crash) via vectors involving an offset size of zero.

    HighCVSS 7.5No exploitEPSS 3%

    libimobiledevice · libplistMar 3, 2017

  • CVE-2017-5836
    31Monitor

    The plist_free_data function in plist.c in libplist allows attackers to cause a denial of service (crash) via vectors involving an integer n

    HighCVSS 7.5No exploitEPSS 3%

    libimobiledevice · libplistMar 3, 2017

  • CVE-2016-5104
    22Monitor

    The socket_create function in common/socket.c in libimobiledevice and libusbmuxd allows remote attackers to bypass intended access restricti

    MediumCVSS 5.3No exploitEPSS 3%

    libimobiledevice · libimobiledeviceJun 13, 2016

  • CVE-2017-7982
    22Monitor

    Integer overflow in the plist_from_bin function in bplist.c in libimobiledevice/libplist before 2017-04-19 allows remote attackers to cause

    MediumCVSS 5.5No exploitEPSS 1%

    libimobiledevice · libplistApr 20, 2017

  • CVE-2017-5834
    22Monitor

    The parse_dict_node function in bplist.c in libplist allows attackers to cause a denial of service (out-of-bounds heap read and crash) via a

    MediumCVSS 5.5No exploitEPSS 1%

    libimobiledevice · libplistMar 3, 2017

  • CVE-2013-2142
    13Monitor

    userpref.c in libimobiledevice 1.1.4, when $HOME and $XDG_CONFIG_HOME are not set, allows local users to overwrite arbitrary files via a sym

    LowCVSS 3.3No exploitEPSS 0%

    libimobiledevice · libimobiledeviceJan 19, 2014