Apple

macOS X

3207 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.35%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Mail in Apple Mac OS X before 10.9 allows remote attackers to spoof the existence of a cryptographic signature for an e-mail message by using the multipart/signed content type within an unsigned message.

  • EPSS 0.44%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Mail in Apple Mac OS X before 10.9, when Kerberos authentication is enabled and TLS is disabled, sends invalid cleartext data, which allows remote attackers to obtain sensitive information by sniffing the network.

  • EPSS 0.5%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The kernel in Apple Mac OS X before 10.9 does not properly check for errors during the processing of multicast Wi-Fi packets, which allows remote attackers to cause a denial of service (system crash) by leveraging presence in an 802.11 network's cove...

  • EPSS 0.22%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ldapsearch command-line program in OpenLDAP in Apple Mac OS X before 10.9 does not properly process the minssf configuration setting, which allows remote attackers to obtain sensitive information by leveraging unintended weak encryption and sniff...

  • EPSS 0.13%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Power Management in Apple Mac OS X before 10.9 does not properly handle the interaction between locking and power assertions, which allows physically proximate attackers to obtain sensitive information by reading a screen that should have transitione...

  • EPSS 0.13%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Screen Lock implementation in Apple Mac OS X before 10.9 does not immediately accept Keychain Status menu Lock Screen commands, and instead incorrectly relies on a certain timeout setting, which allows physically proximate attackers to obtain sen...

  • EPSS 0.13%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Screen Lock implementation in Apple Mac OS X before 10.9, when hibernation and autologin are enabled, does not require a password for a transition out of hibernation, which allows physically proximate attackers to obtain access by visiting an una...

  • EPSS 0.17%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Apple Mac OS X before 10.9 does not preserve a certain administrative system-preferences setting across software updates, which allows context-dependent attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an ...

  • EPSS 0.37%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Smart Card Services in Apple Mac OS X before 10.9 does not properly implement certificate-revocation checks, which allows remote attackers to cause a denial of service (Smart Card usage outage) by interfering with the revocation-check procedure.

  • EPSS 0.13%
  • Veröffentlicht 24.10.2013 03:48:52
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The syslog implementation in Apple Mac OS X before 10.9 allows local users to obtain sensitive information by leveraging access to the Guest account and reading console-log messages from previous Guest sessions.