Apple

macOS X

3207 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.3%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Finder in Apple Mac OS X 10.5.2 through 10.5.4 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors involving a search for a remote disk on the local network.

  • EPSS 1.07%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple integer overflows in the SearchKit API in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allow context-dependent attackers to cause a denial of service (application crash) or execute arbitrary code via vectors associated with "passing untrus...

  • EPSS 0.32%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Remote Management and Screen Sharing in Apple Mac OS X 10.5 through 10.5.4, when used to set a password for a VNC viewer, displays additional input characters beyond the maximum password length, which might make it easier for attackers to guess passw...

  • EPSS 0.66%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The File Sharing pane in the Sharing preference pane in Apple Mac OS X 10.5 through 10.5.4 does not inform users that the complete contents of their own home directories are shared for their own use, which might allow attackers to leverage other vuln...

  • EPSS 0.05%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Time Machine in Apple Mac OS X 10.5 through 10.5.4 uses weak permissions for Time Machine Backup log files, which allows local users to obtain sensitive information by reading these files.

  • EPSS 3.67%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

VideoConference in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via vectors involving H.264 encoded media.

  • EPSS 0.45%
  • Veröffentlicht 16.09.2008 23:00:01
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Cross-site scripting (XSS) vulnerability in Wiki Server in Apple Mac OS X 10.5 through 10.5.4 allows remote attackers to inject arbitrary web script or HTML via an e-mail message that reaches a mailing-list archive, aka "persistent JavaScript injecti...

  • EPSS 8.71%
  • Veröffentlicht 16.09.2008 23:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Heap-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows remote attackers to execute arbitrary code via a document containing a crafted font, related to "PostScript font names."

  • EPSS 0.07%
  • Veröffentlicht 16.09.2008 23:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Network Preferences in Apple Mac OS X 10.4.11 stores PPP passwords in cleartext in a world-readable file, which allows local users to obtain sensitive information by reading this file.

  • EPSS 0.09%
  • Veröffentlicht 16.09.2008 23:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Directory Services in Apple Mac OS X 10.5 through 10.5.4, when Active Directory is used, allows attackers to enumerate user names via wildcard characters in the Login Window.