Show filters
111 Total Results
Displaying 101-110 of 111
Sort by:
Attacker Value
Unknown
CVE-2008-4214
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Script Editor in Mac OS X 10.4.11 and 10.5.5 allows local users to cause the scripting dictionary to be written to arbitrary locations, related to an "insecure file operation" on temporary files.
0
Attacker Value
Unknown
CVE-2008-3646
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
The Postfix configuration file in Mac OS X 10.5.5 causes Postfix to be network-accessible when mail is sent from a local command-line tool, which allows remote attackers to send mail to local Mac OS X users.
0
Attacker Value
Unknown
CVE-2008-3645
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the local IPC component in the EAPOLController plugin for configd (Networking component) in Mac OS X 10.4.11 and 10.5.5 allows local users to execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown
CVE-2008-4212
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Unspecified vulnerability in rlogind in the rlogin component in Mac OS X 10.4.11 and 10.5.5 applies hosts.equiv entries to root despite what is stated in documentation, which might allow remote attackers to bypass intended access restrictions.
0
Attacker Value
Unknown
CVE-2008-3647
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Buffer overflow in PSNormalizer in Mac OS X 10.4.11 and 10.5.5 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via a PostScript file with a crafted bounding box comment.
0
Attacker Value
Unknown
CVE-2008-4211
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Integer signedness error in (1) QuickLook in Apple Mac OS X 10.5.5 and (2) Office Viewer in Apple iPhone OS 1.0 through 2.1 and iPhone OS for iPod touch 1.1 through 2.1 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via a crafted Microsoft Excel file that triggers an out-of-bounds memory access, related to "handling of columns."
0
Attacker Value
Unknown
CVE-2008-3642
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Buffer overflow in ColorSync in Mac OS X 10.4.11 and 10.5.5 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via an image with a crafted ICC profile.
0
Attacker Value
Unknown
CVE-2008-3643
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Finder in Mac OS X 10.5.5 allows user-assisted attackers to cause a denial of service (continuous termination and restart) via a crafted Desktop file that generates an error when producing its icon, related to an "error recovery issue."
0
Attacker Value
Unknown
CVE-2008-4368
Disclosure Date: October 01, 2008 (last updated October 04, 2023)
The default configuration of Java 1.5 on Apple Mac OS X 10.5.4 and 10.5.5 contains a jurisdiction policy that limits Java Cryptography Extension (JCE) key sizes to 128 bits, which makes it easier for attackers to decrypt ciphertext produced by JCE.
0
Attacker Value
Unknown
CVE-2008-3637
Disclosure Date: September 26, 2008 (last updated February 16, 2024)
The Hash-based Message Authentication Code (HMAC) provider in Java on Apple Mac OS X 10.4.11, 10.5.4, and 10.5.5 uses an uninitialized variable, which allows remote attackers to execute arbitrary code via a crafted applet, related to an "error checking issue."
0