Apple

macOS X Server

655 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.12%
  • Veröffentlicht 11.05.2012 03:49:58
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Race condition in the initialization routine in blued in Bluetooth in Apple Mac OS X before 10.7.4 allows local users to gain privileges via vectors involving a temporary file.

  • EPSS 0.49%
  • Veröffentlicht 11.05.2012 03:49:58
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The directory server in Directory Service in Apple Mac OS X 10.6.8 allows remote attackers to obtain sensitive information from process memory via a crafted message.

  • EPSS 0.56%
  • Veröffentlicht 11.05.2012 03:49:58
  • Zuletzt bearbeitet 11.04.2025 00:51:21

libsecurity in Apple Mac OS X before 10.7.4 accesses uninitialized memory locations during the processing of X.509 certificates, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ce...

  • EPSS 0.23%
  • Veröffentlicht 11.05.2012 03:49:58
  • Zuletzt bearbeitet 11.04.2025 00:51:21

libsecurity in Apple Mac OS X before 10.7.4 does not properly restrict the length of RSA keys within X.509 certificates, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by conducting a spoofing or network-snif...

Exploit
  • EPSS 28.67%
  • Veröffentlicht 16.02.2012 20:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.

  • EPSS 0.24%
  • Veröffentlicht 02.02.2012 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network...

  • EPSS 1.34%
  • Veröffentlicht 02.02.2012 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Apple Type Services (ATS) in Apple Mac OS X before 10.7.3 does not properly manage memory for data-font files, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted font that is accesse...

  • EPSS 0.24%
  • Veröffentlicht 02.02.2012 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

CFNetwork in Apple Mac OS X 10.7.x before 10.7.3 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL.

  • EPSS 1.22%
  • Veröffentlicht 02.02.2012 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in CoreMedia in Apple Mac OS X before 10.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.264 encoding.

  • EPSS 1.29%
  • Veröffentlicht 02.02.2012 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Use-after-free vulnerability in CoreText in Apple Mac OS X before 10.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted embedded font in a document.