CVE-2006-1471
- EPSS 0.07%
- Veröffentlicht 27.06.2006 22:13:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Format string vulnerability in the CF_syslog function launchd in Apple Mac OS X 10.4 up to 10.4.6 allows local users to execute arbitrary code via format string specifiers that are not properly handled in a syslog call in the logging facility, as dem...
CVE-2006-1455
- EPSS 1.38%
- Veröffentlicht 12.05.2006 21:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
QuickTime Streaming Server in Apple Mac OS X 10.3.9 and 10.4.6 allows remote attackers to cause a denial of service (crash and connection interruption) via a QuickTime movie with a missing track, which triggers a null dereference.
CVE-2006-1456
- EPSS 4.56%
- Veröffentlicht 12.05.2006 21:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in QuickTime Streaming Server in Apple Mac OS X 10.3.9 and 10.4.6 allows remote attackers to execute arbitrary code via a crafted RTSP request, which is not properly handled during message logging.
CVE-2006-1457
- EPSS 1.23%
- Veröffentlicht 12.05.2006 21:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Safari on Apple Mac OS X 10.4.6, when "Open `safe' files after downloading" is enabled, will automatically expand archives, which could allow remote attackers to overwrite arbitrary files via an archive that contains a symlink.
CVE-2006-1981
- EPSS 0.07%
- Veröffentlicht 21.04.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in Java InputMethods on Mac OS X 10.4.5 may cause InputMethods to send input events for secure fields to the wrong text field, which might reveal the password to others who can view the screen.
CVE-2006-1982
- EPSS 44.86%
- Veröffentlicht 21.04.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Heap-based buffer overflow in the LZWDecodeVector function in Mac OS X before 10.4.6, as used in applications that use ImageIO or AppKit, allows remote attackers to execute arbitrary code via crafted TIFF images.
CVE-2006-1983
- EPSS 36.23%
- Veröffentlicht 21.04.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Multiple heap-based buffer overflows in Mac OS X 10.4.6 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via the (1) PredictorVSetField function for TIFF or (2) CFAllocatorAllocate function for GIF, ...
- EPSS 5.64%
- Veröffentlicht 21.04.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in the _cg_TIFFSetField function in Mac OS X 10.4.6 and earlier, as used in applications that use ImageIO or AppKit, allows remote attackers to cause a denial of service (application crash) via a crafted TIFF image that trig...
CVE-2006-1985
- EPSS 22.17%
- Veröffentlicht 21.04.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Heap-based buffer overflow in BOM BOMArchiveHelper 10.4 (6.3) Build 312, as used in Mac OS X 10.4.6 and earlier, allows user-assisted attackers to execute arbitrary code via a crafted archive (such as ZIP) that contains long path names, which trigger...
CVE-2006-0401
- EPSS 0.08%
- Veröffentlicht 05.04.2006 10:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in Mac OS X before 10.4.6, when running on an Intel-based computer, allows attackers with physical access to bypass the firmware password and log on in Single User Mode via unspecified vectors.