CVE-2006-6129
- EPSS 0.61%
- Published 27.11.2006 00:07:00
- Last modified 09.04.2025 00:30:58
Integer overflow in the fatfile_getarch2 in Apple Mac OS X allows local users to cause a denial of service and possibly execute arbitrary code via a crafted Mach-O Universal program that triggers memory corruption.
CVE-2006-6061
- EPSS 37.59%
- Published 22.11.2006 01:07:00
- Last modified 09.04.2025 00:30:58
com.apple.AppleDiskImageController in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to execute arbitrary code via a malformed DMG image that triggers memory corruption. NOTE: the severity of this issue has been disputed...
CVE-2006-6062
- EPSS 21.21%
- Published 22.11.2006 01:07:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to cause a denial of service (crash) via a malformed UDTO HFS+ disk image, such as with "bad sectors," which triggers memory corruption.
- EPSS 7.02%
- Published 21.11.2006 23:07:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in the JavaScript implementation in Safari on Apple Mac OS X 10.4 allows remote attackers to cause a denial of service (application crash) via a long argument to the exec method of a regular expression.
CVE-2006-5710
- EPSS 33.59%
- Published 04.11.2006 01:07:00
- Last modified 09.04.2025 00:30:58
The Airport driver for certain Orinoco based Airport cards in Darwin kernel 8.8.0 in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to execute arbitrary code via an 802.11 probe response frame without any valid informatio...
CVE-2006-4387
- EPSS 0.09%
- Published 03.10.2006 04:02:00
- Last modified 09.04.2025 00:30:58
Apple Mac OS X 10.4 through 10.4.7, when the administrator clears the "Allow user to administer this computer" checkbox in System Preferences for a user, does not remove the user's account from the appserveradm or appserverusr groups, which still all...
CVE-2006-4390
- EPSS 0.28%
- Published 03.10.2006 04:02:00
- Last modified 09.04.2025 00:30:58
CFNetwork in Apple Mac OS X 10.4 through 10.4.7 and 10.3.9 allows remote SSL sites to appear as trusted sites by using encryption without authentication, which can cause the lock icon in Safari to be displayed even when the site's identity cannot be ...
CVE-2006-4391
- EPSS 14.82%
- Published 03.10.2006 04:02:00
- Last modified 09.04.2025 00:30:58
Buffer overflow in Apple ImageIO on Apple Mac OS X 10.4 through 10.4.7 allows remote attackers to execute arbitrary code via a malformed JPEG2000 image.
CVE-2006-4392
- EPSS 1.09%
- Published 03.10.2006 04:02:00
- Last modified 09.04.2025 00:30:58
The Mach kernel, as used in operating systems including (1) Mac OS X 10.4 through 10.4.7 and (2) OpenStep before 4.2, allows local users to gain privileges via a parent process that forces an exception in a setuid child and uses Mach exception ports ...
CVE-2006-4393
- EPSS 0.08%
- Published 03.10.2006 04:02:00
- Last modified 09.04.2025 00:30:58
Unspecified vulnerability in LoginWindow in Apple Mac OS X 10.4 through 10.4.7, when Fast User Switching is enabled, allows local users to gain access to Kerberos tickets of other users.