Apple

macOS X

3207 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.75%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack consumption vulnerability in CoreAnimation in Apple Mac OS X before 10.8.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted text glyph in a URL encountered by Safari.

  • EPSS 9.86%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Directory Service in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted message.

  • EPSS 0.05%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Disk Management in Apple Mac OS X before 10.8.4 does not properly authenticate attempts to disable FileVault, which allows local users to cause a denial of service (loss of encryption functionality) via an unspecified command line.

  • EPSS 0.43%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

SMB in Apple Mac OS X before 10.8.4, when file sharing is enabled, allows remote authenticated users to create or modify files outside of a shared directory via unspecified vectors.

  • EPSS 0.9%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

CoreMedia Playback in Apple Mac OS X before 10.8.4 does not properly initialize memory during the processing of text tracks, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie ...

Exploit
  • EPSS 0.05%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not prevent use of the _POSIX_SPAWN_DISABLE_ASLR and _POSIX_SPAWN_ALLOW_DATA_EXEC flags for setuid and setgid programs, which allows local users to bypass intended access res...

Exploit
  • EPSS 0.06%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a prog...

Exploit
  • EPSS 0.13%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The fill_pipeinfo function in bsd/kern/sys_pipe.c in the XNU kernel in Apple Mac OS X 10.8.x allows local users to defeat the KASLR protection mechanism via the PROC_PIDFDPIPEINFO option to the proc_info system call for a kernel pipe handle.

Exploit
  • EPSS 0.15%
  • Veröffentlicht 05.06.2013 14:39:55
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The mach_port_space_info function in osfmk/ipc/mach_debug.c in the XNU kernel in Apple Mac OS X 10.8.x does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted call...

  • EPSS 3.66%
  • Veröffentlicht 24.05.2013 16:43:58
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted enof atoms in a movie file.