Linus Henze

3 exploits Active since May 2022
CVE-2022-26766 NOMISEC MEDIUM WORKING POC
tvOS <15.5-iOS <15.5- iPadOS <15.5 - Signature Validation Bypass
A certificate parsing issue was addressed with improved checks. This issue is fixed in tvOS 15.5, iOS 15.5 and iPadOS 15.5, Security Update 2022-004 Catalina, watchOS 8.6, macOS Big Sur 11.6.6, macOS Monterey 12.4. A malicious app may be able to bypass signature validation.
88 stars
CVSS 5.5
CVE-2023-41993 NOMISEC HIGH WORKING POC
Apple Macos < 14.0 - Improper Condition Check
The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14. Processing web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited against versions of iOS before iOS 16.7.
16 stars
CVSS 8.8
CVE-2023-28206 NOMISEC HIGH WORKING POC
Apple Ipados < 15.7.5 - Out-of-Bounds Write
An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Monterey 12.6.5, iOS 16.4.1 and iPadOS 16.4.1, macOS Ventura 13.3.1, iOS 15.7.5 and iPadOS 15.7.5, macOS Big Sur 11.7.6. An app may be able to execute arbitrary code with kernel privileges. Apple is aware of a report that this issue may have been actively exploited.
8 stars
CVSS 8.6