Apple

macOS X

3207 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 33.35%
  • Veröffentlicht 20.12.2006 02:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute ...

Exploit
  • EPSS 0.56%
  • Veröffentlicht 07.12.2006 01:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in BOMArchiveHelper in Mac OS X allow user-assisted remote attackers to cause a denial of service (application crash) via unspecified vectors related to (1) certain KERN_PROTECTION_FAILURE thread crashes and (2) c...

  • EPSS 0.97%
  • Veröffentlicht 05.12.2006 11:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Apple Airport Extreme firmware 0.1.27 in Mac OS X 10.4.8 on Mac mini, MacBook, and MacBook Pro with Core Duo hardware allows remote attackers to cause a denial of service (out-of-bounds memory access and kernel panic) and have possibly other security...

  • EPSS 0.09%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Apple Type Services (ATS) server in Mac OS X 10.4.8 and earlier does not securely create log files, which allows local users to create and modify arbitrary files via unspecified vectors, possibly relating to a symlink attack.

  • EPSS 0.1%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Multiple buffer overflows in the Apple Type Services (ATS) server in Mac OS X 10.4 through 10.4.8 allow local users to execute arbitrary code via crafted service requests.

  • EPSS 1.35%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Stack-based buffer overflow in the Apple Type Services (ATS) server in Mac OS 10.4.8 and earlier allow user-assisted attackers to execute arbitrary code via crafted font files.

  • EPSS 2.5%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Unspecified vulnerability in CFNetwork in Mac OS 10.4.8 and earlier allows user-assisted remote attackers to execute arbitrary FTP commands via a crafted FTP URI.

  • EPSS 14.26%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Heap-based buffer overflow in the Finder in Apple Mac OS X 10.4.8 and earlier allows user-assisted remote attackers to execute arbitrary code by browsing directories containing crafted .DS_Store files.

  • EPSS 2.91%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The FTP server in Apple Mac OS X 10.4.8 and earlier, when FTP Access is enabled, will crash when a login failure occurs with a valid user name, which allows remote attackers to cause a denial of service (crash) and enumerate valid usernames.

  • EPSS 0.55%
  • Veröffentlicht 30.11.2006 16:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Installer application in Apple Mac OS X 10.4.8 and earlier, when used by a user with Admin credentials, does not authenticate the user before installing certain software requiring system privileges.