Apple

macOS X

3207 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2.86%
  • Published 19.08.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Safari in WebKit in Mac OS X 10.4 to 10.4.2 directly accesses URLs within PDF files without the normal security checks, which allows remote attackers to execute arbitrary code via links in a PDF file.

  • EPSS 0.53%
  • Published 19.08.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Multiple cross-site scripting (XSS) vulnerabilities in Weblog Server in Mac OS X 10.4 to 10.4.2 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.

  • EPSS 0.74%
  • Published 19.08.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, which allows remote attackers to cause a denial of service (printing halt).

  • EPSS 0.74%
  • Published 19.08.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.

  • EPSS 55.2%
  • Published 18.07.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions.

  • EPSS 0.05%
  • Published 16.06.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Unknown vulnerability in the CoreGraphics Window Server for Mac OS X 10.4.x up to 10.4.1 allows local users to inject arbitrary commands into root sessions.

  • EPSS 0.07%
  • Published 13.06.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

SecurityAgent in Apple Mac OS X 10.4.1 allows attackers with physical access to bypass the locked screensaver and launch background applications by opening a URL from a text input field.

  • EPSS 1.24%
  • Published 13.06.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Dashboard in Apple Mac OS X 10.4.1 allows remote attackers to install widgets via Safari without prompting the user, a different vulnerability than CVE-2005-1933.

Exploit
  • EPSS 1.25%
  • Published 13.06.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Dashboard in Apple Mac OS X Tiger 10.4 allows attackers to execute arbitrary commands by overriding the behavior of system widgets via a user widget with the same bundle identifier (CFBundleIdentifier), a different vulnerability than CVE-2005-1474.

  • EPSS 0.06%
  • Published 08.06.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

MCX Client for Apple Mac OS X 10.4.x up to 10.4.1 insecurely logs Portable Home Directory credentials, which allows local users to obtain the credentials.