2014 CVE Vulnerabilities

9,002 CVEs published in 2014.

CVE IDSeverityCVSSDescription
CVE-2014-4407IOKit in Apple iOS before 8 and Apple TV before 7 does not properly initialize kernel memory, which allows attackers to ...
CVE-2014-4405IOHIDFamily in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a privileged conte...
CVE-2014-4404HIGH7.8Heap-based buffer overflow in IOHIDFamily in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitr...
CVE-2014-4389Integer overflow in IOKit in Apple iOS before 8 and Apple TV before 7 allows attackers to execute arbitrary code in a pr...
CVE-2014-4388IOKit in Apple iOS before 8 and Apple TV before 7 does not properly validate IODataQueue object metadata, which allows a...
CVE-2014-4386Race condition in the App Installation feature in Apple iOS before 8 allows local users to gain privileges and install u...
CVE-2014-4384Directory traversal vulnerability in the App Installation feature in Apple iOS before 8 allows local users to install un...
CVE-2014-4383The Assets subsystem in Apple iOS before 8 and Apple TV before 7 allows man-in-the-middle attackers to spoof a device's ...
CVE-2014-4381Libnotify in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking on write operations, which allows att...
CVE-2014-4380The IOHIDFamily kernel extension in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking on write opera...
CVE-2014-4379An unspecified IOHIDFamily function in Apple iOS before 8 and Apple TV before 7 lacks proper bounds checking to prevent ...
CVE-2014-4378CoreGraphics in Apple iOS before 8 and Apple TV before 7 allows remote attackers to obtain sensitive information or caus...
CVE-2014-4377Integer overflow in CoreGraphics in Apple iOS before 8 and Apple TV before 7 allows remote attackers to execute arbitrar...
CVE-2014-4375Double free vulnerability in Apple iOS before 8 and Apple TV before 7 allows local users to gain privileges or cause a d...
CVE-2014-4374NSXMLParser in Foundation in Apple iOS before 8 allows attackers to read arbitrary files via XML data containing an exte...
CVE-2014-4373The IntelAccelerator driver in the IOAcceleratorFamily subsystem in Apple iOS before 8 and Apple TV before 7 allows atta...
CVE-2014-4372syslogd in the syslog subsystem in Apple iOS before 8 and Apple TV before 7 allows local users to change the permissions...
CVE-2014-4371The network-statistics interface in the kernel in Apple iOS before 8 and Apple TV before 7 does not properly initialize ...
CVE-2014-4369The IOAcceleratorFamily API implementation in Apple iOS before 8 and Apple TV before 7 allows attackers to cause a denia...
CVE-2014-4368The Accessibility subsystem in Apple iOS before 8 allows attackers to interfere with screen locking via vectors related ...
CVE-2014-4367Apple iOS before 8 enables Voice Dial during all upgrade actions, which makes it easier for physically proximate attacke...
CVE-2014-4366Mail in Apple iOS before 8 does not prevent sending a LOGIN command to a LOGINDISABLED IMAP server, which allows remote ...
CVE-2014-4364The 802.1X subsystem in Apple iOS before 8 and Apple TV before 7 does not require strong authentication methods, which a...
CVE-2014-4363Safari in Apple iOS before 8 does not properly restrict the autofilling of passwords in forms, which allows remote attac...
CVE-2014-4362The Sandbox Profiles implementation in Apple iOS before 8 does not properly restrict the third-party app sandbox profile...

Check if your code is affected by 2014 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now