CVE-2008-4219
- EPSS 0.07%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS server, related to occurrence of an exception in th...
- EPSS 0.89%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
Integer overflow in the inet_net_pton API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors. NOTE: this may be related t...
- EPSS 0.89%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
The strptime API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via a crafted date string, related to improper memory al...
CVE-2008-4222
- EPSS 0.24%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
natd in network_cmds in Apple Mac OS X before 10.5.6, when Internet Sharing is enabled, allows remote attackers to cause a denial of service (infinite loop) via a crafted TCP packet.
- EPSS 1.67%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
Podcast Producer in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to bypass authentication and gain administrative access via unspecified vectors.
CVE-2008-4224
- EPSS 0.68%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
UDF in Apple Mac OS X before 10.5.6 allows user-assisted attackers to cause a denial of service (system crash) via a malformed UDF volume in a crafted ISO file.
CVE-2008-4234
- EPSS 4.97%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
Incomplete blacklist vulnerability in the Quarantine feature in CoreTypes in Apple Mac OS X 10.5 before 10.5.6 allows user-assisted remote attackers to execute arbitrary code via an executable file with the content type indicating no application asso...
CVE-2008-4236
- EPSS 0.6%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
Apple Type Services (ATS) in Apple Mac OS X 10.5 before 10.5.6 allows remote attackers to cause a denial of service (infinite loop) via a crafted embedded font in a PDF file.
- EPSS 0.52%
- Published 17.12.2008 01:30:00
- Last modified 09.04.2025 00:30:58
Managed Client in Apple Mac OS X before 10.5.6 sometimes misidentifies a system when installing per-host configuration settings, which allows context-dependent attackers to have an unspecified impact by leveraging unintended settings, as demonstrated...
CVE-2008-5183
- EPSS 1.97%
- Published 21.11.2008 02:30:00
- Last modified 09.04.2025 00:30:58
cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NOTE: this issue can be triggere...