Apple

macOS X

3207 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.17%
  • Published 31.01.2007 02:28:00
  • Last modified 09.04.2025 00:30:58

crashdump in Apple Mac OS X 10.4.8 allows local users in the admin group to modify arbitrary files or gain privileges via a symlink attack on application logs in /Library/Logs/CrashReporter/.

Exploit
  • EPSS 30.04%
  • Published 31.01.2007 01:28:00
  • Last modified 09.04.2025 00:30:58

Format string vulnerability in Apple Installer 2.1.5 on Mac OS X 10.4.8 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a (1) PKG, (2) DISTZ, or (3) MPKG package filename.

  • EPSS 30.47%
  • Published 30.01.2007 18:28:00
  • Last modified 09.04.2025 00:30:58

The InternalUnpackBits function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a c...

  • EPSS 15.61%
  • Published 26.01.2007 01:28:00
  • Last modified 09.04.2025 00:30:58

The _GetSrcBits32ARGB function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a cr...

Exploit
  • EPSS 0.23%
  • Published 24.01.2007 01:28:00
  • Last modified 09.04.2025 00:30:58

The CFUserNotificationSendRequest function in UserNotificationCenter.app in Apple Mac OS X 10.4.8, when used in combination with diskutil, allows local users to gain privileges via a malicious InputManager in Library/InputManagers in a user's home di...

  • EPSS 0.15%
  • Published 23.01.2007 02:28:00
  • Last modified 09.04.2025 00:30:58

The shared_region_map_file_np function in Apple Mac OS X 10.4.8 and earlier kernel allows local users to cause a denial of service (memory corruption) via a large mappingCount value.

Exploit
  • EPSS 0.15%
  • Published 23.01.2007 00:28:00
  • Last modified 09.04.2025 00:30:58

Untrusted search path vulnerability in writeconfig in Apple Mac OS X 10.4.8 allows local users to gain privileges via a modified PATH that points to a malicious launchctl program.

  • EPSS 2.09%
  • Published 19.01.2007 01:28:00
  • Last modified 09.04.2025 00:30:58

Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and earlier, including 10.4.8, allows local users, and possibly remote attackers, to gain privileges and possibly execute arbitrary code via a registration request w...

Exploit
  • EPSS 5.22%
  • Published 18.01.2007 02:28:00
  • Last modified 09.04.2025 00:30:58

WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element with a large number in the ROWSPAN attribute, as demonstrated by a crash of OmniWeb 5.5.3 on Mac OS X 1...

Exploit
  • EPSS 0.08%
  • Published 18.01.2007 02:28:00
  • Last modified 09.04.2025 00:30:58

The (1) Activity Monitor.app/Contents/Resources/pmTool, (2) Keychain Access.app/Contents/Resources/kcproxy, and (3) ODBC Administrator.app/Contents/Resources/iodbcadmintool programs in /Applications/Utilities/ in Mac OS X 10.4.8 have weak permissions...