CVE-2009-0009
- EPSS 2.61%
- Veröffentlicht 13.02.2009 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the Pixlet codec in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted movie file that triggers memory corrup...
CVE-2009-0142
- EPSS 0.06%
- Veröffentlicht 12.02.2009 23:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in AFP Server in Apple Mac OS X 10.5.6 allows local users to cause a denial of service (infinite loop) via unspecified vectors related to "file enumeration logic."
CVE-2008-4217
- EPSS 5.27%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer signedness error in BOM in Apple Mac OS X before 10.5.6 allows remote attackers to execute arbitrary code via the headers in a crafted CPIO archive, leading to a stack-based buffer overflow.
CVE-2008-4218
- EPSS 0.05%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple integer overflows in the kernel in Apple Mac OS X before 10.5.6 on Intel platforms allow local users to gain privileges via a crafted call to (1) i386_set_ldt or (2) i386_get_ldt.
CVE-2008-4219
- EPSS 0.07%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS server, related to occurrence of an exception in th...
- EPSS 0.89%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Integer overflow in the inet_net_pton API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors. NOTE: this may be related t...
- EPSS 0.89%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The strptime API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a crafted date string, related to improper memory al...
CVE-2008-4222
- EPSS 0.24%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
natd in network_cmds in Apple Mac OS X before 10.5.6, when Internet Sharing is enabled, allows remote attackers to cause a denial of service (infinite loop) via a crafted TCP packet.
CVE-2008-4224
- EPSS 0.68%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
UDF in Apple Mac OS X before 10.5.6 allows user-assisted attackers to cause a denial of service (system crash) via a malformed UDF volume in a crafted ISO file.
CVE-2008-4234
- EPSS 4.97%
- Veröffentlicht 17.12.2008 01:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Incomplete blacklist vulnerability in the Quarantine feature in CoreTypes in Apple Mac OS X 10.5 before 10.5.6 allows user-assisted remote attackers to execute arbitrary code via an executable file with the content type indicating no application asso...