Apple

macOS X

3207 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.4%
  • Published 12.02.2008 20:00:00
  • Last modified 09.04.2025 00:30:58

Parental Controls in Apple Mac OS X 10.5 through 10.5.1 contacts www.apple.com "when a website is unblocked," which allows remote attackers to determine when a system is running Parental Controls.

  • EPSS 4.01%
  • Published 12.02.2008 20:00:00
  • Last modified 09.04.2025 00:30:58

Argument injection vulnerability in Terminal.app in Terminal in Apple Mac OS X 10.4.11 and 10.5 through 10.5.1 allows remote attackers to execute arbitrary code via unspecified URL schemes.

  • EPSS 3.74%
  • Published 18.01.2008 23:00:00
  • Last modified 09.04.2025 00:30:58

The XInput extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions, a different vulnerability than CVE-2007-4990.

  • EPSS 91.94%
  • Published 10.01.2008 23:46:00
  • Last modified 09.04.2025 00:30:58

Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer& operator>>" in yass...

  • EPSS 0.22%
  • Published 19.12.2007 21:46:00
  • Last modified 09.04.2025 00:30:58

Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mount_smbfs or (2) an unspecified manipulation of the command line to smbutil.

  • EPSS 2.96%
  • Published 19.12.2007 21:46:00
  • Last modified 09.04.2025 00:30:58

Format string vulnerability in Address Book in Apple Mac OS X 10.4.11 allows remote attackers to execute arbitrary code via the URL handler.

  • EPSS 0.14%
  • Published 19.12.2007 21:46:00
  • Last modified 09.04.2025 00:30:58

Directory traversal vulnerability in CFNetwork in Apple Mac OS X 10.5.1 allows remote attackers to overwrite arbitrary files via a crafted HTTP response.

  • EPSS 4.77%
  • Published 19.12.2007 21:46:00
  • Last modified 09.04.2025 00:30:58

Unspecified vulnerability in ColorSync in Apple Mac OS X 10.4.11 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via an image with a crafted ColorSync profile, which triggers memory corruption.

  • EPSS 0.04%
  • Published 19.12.2007 21:46:00
  • Last modified 09.04.2025 00:30:58

Race condition in the CFURLWriteDataAndPropertiesToResource API in Core Foundation in Apple Mac OS X 10.4.11 creates files with insecure permissions, which might allow local users to obtain sensitive information.

  • EPSS 0.27%
  • Published 19.12.2007 21:46:00
  • Last modified 09.04.2025 00:30:58

Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.