- EPSS 0.74%
- Published 17.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
The arplookup function in FreeBSD 5.1 and earlier, Mac OS X before 10.2.8, and possibly other BSD-based systems, allows remote attackers on a local subnet to cause a denial of service (resource starvation and panic) via a flood of spoofed ARP request...
CVE-2003-0871
- EPSS 0.56%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system."
CVE-2003-0876
- EPSS 0.08%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), which could cause the directories to have less restrictive permissions th...
CVE-2003-0877
- EPSS 0.07%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Mac OS X before 10.3 with core files enabled allows local users to overwrite arbitrary files and read core files via a symlink attack on core files that are created with predictable names in the /cores directory.
CVE-2003-0878
- EPSS 0.11%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.
CVE-2003-0880
- EPSS 0.06%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Unknown vulnerability in Mac OS X before 10.3 allows local users to access Dock functions from behind Screen Effects when Full Keyboard Access is enabled using the Keyboard pane in System Preferences.
CVE-2003-0881
- EPSS 0.79%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password.
- EPSS 0.5%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Mac OS X before 10.3 initializes the TCP timestamp with a constant number, which allows remote attackers to determine the system's uptime via the ID field in a TCP packet.
CVE-2003-0883
- EPSS 0.06%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
The System Preferences capability in Mac OS X before 10.3 allows local users to access secure Preference Panes for a short period after an administrator has authenticated to the system.
CVE-2003-0895
- EPSS 0.31%
- Published 03.11.2003 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in the Mac OS X kernel 10.2.8 and earlier allows local users, and possibly remote attackers, to cause a denial of service (crash), access portions of memory, and possibly execute arbitrary code via a long command line argument (argv[]...