CVE-2006-3506
- EPSS 0.28%
- Veröffentlicht 21.08.2006 19:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in the Xsan Filesystem driver on Mac OS X 10.4.7 and OS X Server 10.4.7 allows local users with Xsan write access, to execute arbitrary code via unspecified vectors related to "processing a path name."
CVE-2006-0395
- EPSS 64.01%
- Veröffentlicht 05.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Download Validation in Mail in Mac OS X 10.4 does not properly recognize attachment file types to warn a user of an unsafe type, which allows user-assisted remote attackers to execute arbitrary code via crafted file types.
CVE-2006-0392
- EPSS 0.75%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Canon RAW image.
- EPSS 0.76%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
OpenSSH in Apple Mac OS X 10.4.7 allows remote attackers to cause a denial of service or determine account existence by attempting to log in using an invalid user, which causes the server to hang.
CVE-2006-3499
- EPSS 0.08%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The dynamic linker (dyld) in Apple Mac OS X 10.3.9 allows local users to obtain sensitive information via unspecified dynamic linker options that affect the use of standard error (stderr) by privileged applications.
CVE-2006-3500
- EPSS 0.07%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The dynamic linker (dyld) in Apple Mac OS X 10.4.7 allows local users to execute arbitrary code via an "improperly handled condition" that leads to use of "dangerous paths," probably related to an untrusted search path vulnerability.
CVE-2006-3501
- EPSS 1.05%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in ImageIO for Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Radiance image.
CVE-2006-3502
- EPSS 0.78%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in ImageIO in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted GIF image that triggers a memory allocation failure that is not proper...
CVE-2006-3503
- EPSS 1.05%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in ImageIO in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malformed GIF image.
CVE-2006-3504
- EPSS 0.42%
- Veröffentlicht 03.08.2006 01:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
The Download Validation in LaunchServices for Apple Mac OS X 10.4.7 can identify certain HTML as "safe", which could allow attackers to execute Javascript code in local context when the "Open 'safe' files after downloading" option is enabled in Safar...