CVE-2014-4410

WebKit, as used in Apple iOS before 8 and Apple TV before 7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2014-09-17-1 and APPLE-SA-2014-09-17-2.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
appleCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 77%
VendorProductVersion
applemac_os_x
𝑥
≤ 10.9.4
appletvos
𝑥
≤ 6.2
appletvos
6.0
appletvos
6.0.1
appletvos
6.0.2
appletvos
6.1
appletvos
6.1.1
appletvos
6.1.2
appleiphone_os
𝑥
≤ 7.1.2
appleiphone_os
7.0
appleiphone_os
7.0.1
appleiphone_os
7.0.2
appleiphone_os
7.0.3
appleiphone_os
7.0.4
appleiphone_os
7.0.5
appleiphone_os
7.0.6
appleiphone_os
7.1
appleiphone_os
7.1.1
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
qtwebkit-opensource-src
yakkety
ignored
xenial
ignored
wily
ignored
vivid
ignored
trusty
dne
precise
dne
qtwebkit-source
yakkety
ignored
xenial
ignored
wily
ignored
vivid
ignored
trusty
dne
precise
ignored
webkit
yakkety
dne
xenial
dne
wily
dne
vivid
dne
trusty
dne
precise
ignored
webkitgtk
yakkety
not-affected
xenial
not-affected
wily
not-affected
vivid
ignored
trusty
dne
precise
dne