Apple

macOS X

3207 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.74%
  • Published 17.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

The arplookup function in FreeBSD 5.1 and earlier, Mac OS X before 10.2.8, and possibly other BSD-based systems, allows remote attackers on a local subnet to cause a denial of service (resource starvation and panic) via a flood of spoofed ARP request...

  • EPSS 0.56%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Unknown vulnerability in QuickTime Java in Mac OS X v10.3 and Mac OS X Server 10.3 allows attackers to gain "unauthorized access to a system."

  • EPSS 0.08%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), which could cause the directories to have less restrictive permissions th...

  • EPSS 0.07%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Mac OS X before 10.3 with core files enabled allows local users to overwrite arbitrary files and read core files via a symlink attack on core files that are created with predictable names in the /cores directory.

  • EPSS 0.11%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

slpd daemon in Mac OS X before 10.3 allows local users to overwrite arbitrary files via a symlink attack on a temporary file, a different vulnerability than CVE-2003-0875.

  • EPSS 0.06%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Unknown vulnerability in Mac OS X before 10.3 allows local users to access Dock functions from behind Screen Effects when Full Keyboard Access is enabled using the Keyboard pane in System Preferences.

  • EPSS 0.79%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Mail in Mac OS X before 10.3, when configured to use MD5 Challenge Response, uses plaintext authentication if the CRAM-MD5 hashed login fails, which could allow remote attackers to gain privileges by sniffing the password.

  • EPSS 0.5%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Mac OS X before 10.3 initializes the TCP timestamp with a constant number, which allows remote attackers to determine the system's uptime via the ID field in a TCP packet.

  • EPSS 0.06%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

The System Preferences capability in Mac OS X before 10.3 allows local users to access secure Preference Panes for a short period after an administrator has authenticated to the system.

  • EPSS 0.31%
  • Published 03.11.2003 05:00:00
  • Last modified 03.04.2025 01:03:51

Buffer overflow in the Mac OS X kernel 10.2.8 and earlier allows local users, and possibly remote attackers, to cause a denial of service (crash), access portions of memory, and possibly execute arbitrary code via a long command line argument (argv[]...