CVE-2006-1469
- EPSS 2.45%
- Published 27.06.2006 22:13:00
- Last modified 03.04.2025 01:03:51
Stack-based buffer overflow in ImageIO in Apple Mac OS X 10.4 up to 10.4.6 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted TIFF image.
- EPSS 13.7%
- Published 27.06.2006 22:13:00
- Last modified 03.04.2025 01:03:51
OpenLDAP in Apple Mac OS X 10.4 up to 10.4.6 allows remote attackers to cause a denial of service (crash) via an invalid LDAP request that triggers an assert error.
CVE-2006-1471
- EPSS 0.07%
- Published 27.06.2006 22:13:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in the CF_syslog function launchd in Apple Mac OS X 10.4 up to 10.4.6 allows local users to execute arbitrary code via format string specifiers that are not properly handled in a syslog call in the logging facility, as dem...
- EPSS 0.68%
- Published 27.06.2006 21:05:00
- Last modified 03.04.2025 01:03:51
Unspecified vulnerability in Apple File Protocol (AFP) server in Apple Mac OS X 10.4 up to 10.4.6 includes the names of restricted files and folders within search results, which might allow remote attackers to obtain sensitive information.
- EPSS 0.68%
- Published 24.05.2006 01:02:00
- Last modified 03.04.2025 01:03:51
Xcode Tools before 2.3 for Mac OS X 10.4, when running the WebObjects plugin, allows remote attackers to access or modify WebObjects projects through a network service.
CVE-2006-1439
- EPSS 0.09%
- Published 12.05.2006 21:02:00
- Last modified 03.04.2025 01:03:51
NSSecureTextField in AppKit in Apple Mac OS X 10.4.6 does not re-enable secure event input under certain circumstances, which could allow other applications in the window session to monitor input characters and keyboard events.
CVE-2006-1440
- EPSS 0.1%
- Published 12.05.2006 21:02:00
- Last modified 03.04.2025 01:03:51
BOM in Apple Mac OS X 10.3.9 and 10.4.6 allows attackers to overwrite arbitrary files via an archive that contains symbolic links.
CVE-2006-1441
- EPSS 2.45%
- Published 12.05.2006 21:02:00
- Last modified 03.04.2025 01:03:51
Integer overflow in CFNetwork in Apple Mac OS X 10.4.6 allows remote attackers to execute arbitrary code via crafted chunked transfer encoding.
CVE-2006-1442
- EPSS 0.77%
- Published 12.05.2006 21:02:00
- Last modified 03.04.2025 01:03:51
The bundle API in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 loads dynamic libraries even if the client application has not directly requested it, which allows attackers to execute arbitrary code from an untrusted bundle.
CVE-2006-1443
- EPSS 0.69%
- Published 12.05.2006 21:02:00
- Last modified 03.04.2025 01:03:51
Integer underflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4.6 allows context-dependent attackers to execute arbitrary code via unspecified vectors involving conversions from string to file system representation within (1) CFStringGetFileSys...