Apple

macOS X

3207 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.05%
  • Published 05.03.2013 21:38:56
  • Last modified 11.04.2025 00:51:21

sudo 1.6.0 through 1.7.10p6 and sudo 1.8.0 through 1.8.6p6 allows local users or physically proximate attackers to bypass intended time restrictions and retain privileges without re-authenticating by setting the system clock and sudo user timestamp t...

  • EPSS 0.2%
  • Published 23.02.2013 21:55:01
  • Last modified 11.04.2025 00:51:21

Google Chrome before 25.0.1364.99 on Mac OS X does not properly implement signal handling for Native Client (aka NaCl) code, which has unspecified impact and attack vectors.

  • EPSS 0.23%
  • Published 20.09.2012 21:55:03
  • Last modified 11.04.2025 00:51:21

Profile Manager in Apple Mac OS X before 10.7.5 does not properly perform authentication for the Device Management private interface, which allows attackers to enumerate managed devices via unspecified vectors.

  • EPSS 2.12%
  • Published 20.09.2012 21:55:03
  • Last modified 11.04.2025 00:51:21

The Sorenson codec in QuickTime in Apple Mac OS X before 10.7.5, and in CoreMedia in iOS before 6, accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a...

  • EPSS 0.08%
  • Published 20.09.2012 21:55:03
  • Last modified 11.04.2025 00:51:21

Apple Mac OS X before 10.7.5 does not properly handle the bNbrPorts field of a USB hub descriptor, which allows physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption and system crash) by attaching a ...

  • EPSS 1.4%
  • Published 20.09.2012 21:55:02
  • Last modified 11.04.2025 00:51:21

Buffer overflow in the DirectoryService Proxy in DirectoryService in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.

  • EPSS 28.97%
  • Published 20.09.2012 21:55:02
  • Last modified 11.04.2025 00:51:21

CoreText in Apple Mac OS X 10.7.x before 10.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write or read) via a crafted text glyph.

  • EPSS 0.06%
  • Published 20.09.2012 21:55:02
  • Last modified 11.04.2025 00:51:21

Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 allows local users to read passwords entered into Login Window (aka LoginWindow) or Screen Saver Unlock by installing an input method that intercepts keystrokes.

  • EPSS 0.45%
  • Published 20.09.2012 21:55:02
  • Last modified 11.04.2025 00:51:21

Mail in Apple Mac OS X before 10.7.5 does not properly handle embedded web plugins, which allows remote attackers to execute arbitrary plugin code via an e-mail message that triggers the loading of a third-party plugin.

  • EPSS 0.24%
  • Published 20.09.2012 21:55:02
  • Last modified 11.04.2025 00:51:21

Mobile Accounts in Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 saves password hashes for external-account use even if external accounts are not enabled, which might allow remote attackers to determine passwords via unspecified access to a m...