Apple

macOS X

3207 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.4%
  • Veröffentlicht 12.02.2008 20:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Parental Controls in Apple Mac OS X 10.5 through 10.5.1 contacts www.apple.com "when a website is unblocked," which allows remote attackers to determine when a system is running Parental Controls.

  • EPSS 4.01%
  • Veröffentlicht 12.02.2008 20:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Argument injection vulnerability in Terminal.app in Terminal in Apple Mac OS X 10.4.11 and 10.5 through 10.5.1 allows remote attackers to execute arbitrary code via unspecified URL schemes.

  • EPSS 3.74%
  • Veröffentlicht 18.01.2008 23:00:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The XInput extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions, a different vulnerability than CVE-2007-4990.

  • EPSS 91.94%
  • Veröffentlicht 10.01.2008 23:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yass...

  • EPSS 0.22%
  • Veröffentlicht 19.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mount_smbfs or (2) an unspecified manipulation of the command line to smbutil.

  • EPSS 2.96%
  • Veröffentlicht 19.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Format string vulnerability in Address Book in Apple Mac OS X 10.4.11 allows remote attackers to execute arbitrary code via the URL handler.

  • EPSS 0.14%
  • Veröffentlicht 19.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Directory traversal vulnerability in CFNetwork in Apple Mac OS X 10.5.1 allows remote attackers to overwrite arbitrary files via a crafted HTTP response.

  • EPSS 4.77%
  • Veröffentlicht 19.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in ColorSync in Apple Mac OS X 10.4.11 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via an image with a crafted ColorSync profile, which triggers memory corruption.

  • EPSS 0.04%
  • Veröffentlicht 19.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Race condition in the CFURLWriteDataAndPropertiesToResource API in Core Foundation in Apple Mac OS X 10.4.11 creates files with insecure permissions, which might allow local users to obtain sensitive information.

  • EPSS 0.27%
  • Veröffentlicht 19.12.2007 21:46:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.