- EPSS 3.82%
- Veröffentlicht 31.03.2006 11:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in ImageIO in Apple Mac OS X 10.4 up to 10.4.5 allows remote attackers to cause a denial of service (crash) via a crafted JPEG image with malformed JPEG metadata, as demonstrated using Safari, aka "Deja-Doom".
CVE-2006-0396
- EPSS 23.31%
- Veröffentlicht 14.03.2006 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Buffer overflow in Mail in Apple Mac OS X 10.4 up to 10.4.5, when patched with Security Update 2006-001, allows remote attackers to execute arbitrary code via a long Real Name value in an e-mail attachment sent in AppleDouble format, which triggers t...
CVE-2006-0397
- EPSS 0.79%
- Veröffentlicht 14.03.2006 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in Safari, LaunchServices, and/or CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows attackers to trick a user into opening an application that appears to be a safe file type. NOTE: due to the lack of specific information ...
CVE-2006-0398
- EPSS 0.79%
- Veröffentlicht 14.03.2006 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in Safari, LaunchServices, and/or CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows attackers to trick a user into opening an application that appears to be a safe file type. NOTE: due to the lack of specific information ...
CVE-2006-0399
- EPSS 0.79%
- Veröffentlicht 14.03.2006 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Unspecified vulnerability in Safari, LaunchServices, and/or CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows attackers to trick a user into opening an application that appears to be a safe file type. NOTE: due to the lack of specific information ...
CVE-2006-0400
- EPSS 0.58%
- Veröffentlicht 14.03.2006 11:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
CoreTypes in Apple Mac OS X 10.4 up to 10.4.5 allows remote attackers to bypass the same-origin policy and execute Javascript in other domains via unknown vectors involving "crafted archives."
CVE-2006-1220
- EPSS 0.09%
- Veröffentlicht 14.03.2006 02:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Integer overflow in the mach_msg_send function in the kernel for Mac OS X might allow local users to execute arbitrary code via unknown attack vectors related to a large message header size, which leads to a heap-based buffer overflow.
CVE-2006-0387
- EPSS 10.6%
- Veröffentlicht 06.03.2006 20:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Stack-based buffer overflow in Safari in Mac OS X 10.4.5 and earlier, and 10.3.9 and earlier, allows remote attackers to execute arbitrary code via unspecified vectors involving a web page with crafted JavaScript, a different vulnerability than CVE-2...
CVE-2006-0386
- EPSS 0.07%
- Veröffentlicht 03.03.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
FileVault in Mac OS X 10.4.5 and earlier does not properly mount user directories when creating a FileVault image, which allows local users to access protected files when FileVault is enabled.
CVE-2006-0388
- EPSS 0.41%
- Veröffentlicht 03.03.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Safari in Mac OS X 10.3 before 10.3.9 and 10.4 before 10.4.5 allows remote attackers to redirect users to local files and execute arbitrary JavaScript via unspecified vectors involving HTTP redirection to local resources.