CVE-2013-0983
- EPSS 0.75%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
Stack consumption vulnerability in CoreAnimation in Apple Mac OS X before 10.8.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted text glyph in a URL encountered by Safari.
CVE-2013-0984
- EPSS 9.86%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
Directory Service in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a crafted message.
CVE-2013-0985
- EPSS 0.05%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
Disk Management in Apple Mac OS X before 10.8.4 does not properly authenticate attempts to disable FileVault, which allows local users to cause a denial of service (loss of encryption functionality) via an unspecified command line.
CVE-2013-0990
- EPSS 0.43%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
SMB in Apple Mac OS X before 10.8.4, when file sharing is enabled, allows remote authenticated users to create or modify files outside of a shared directory via unspecified vectors.
CVE-2013-1024
- EPSS 0.9%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
CoreMedia Playback in Apple Mac OS X before 10.8.4 does not properly initialize memory during the processing of text tracks, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie ...
CVE-2013-3949
- EPSS 0.05%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
The posix_spawn system call in the XNU kernel in Apple Mac OS X 10.8.x does not prevent use of the _POSIX_SPAWN_DISABLE_ASLR and _POSIX_SPAWN_ALLOW_DATA_EXEC flags for setuid and setgid programs, which allows local users to bypass intended access res...
CVE-2013-3951
- EPSS 0.06%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
sys/openbsd/stack_protector.c in libc in Apple iOS 6.1.3 and Mac OS X 10.8.x does not properly parse the Apple strings employed in the user-space stack-cookie implementation, which allows local users to bypass cookie randomization by executing a prog...
CVE-2013-3952
- EPSS 0.13%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
The fill_pipeinfo function in bsd/kern/sys_pipe.c in the XNU kernel in Apple Mac OS X 10.8.x allows local users to defeat the KASLR protection mechanism via the PROC_PIDFDPIPEINFO option to the proc_info system call for a kernel pipe handle.
CVE-2013-3953
- EPSS 0.15%
- Published 05.06.2013 14:39:55
- Last modified 11.04.2025 00:51:21
The mach_port_space_info function in osfmk/ipc/mach_debug.c in the XNU kernel in Apple Mac OS X 10.8.x does not initialize a certain structure member, which allows local users to obtain sensitive information from kernel heap memory via a crafted call...
CVE-2013-0986
- EPSS 3.66%
- Published 24.05.2013 16:43:58
- Last modified 11.04.2025 00:51:21
Buffer overflow in Apple QuickTime before 7.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted enof atoms in a movie file.