Show filters
157 Total Results
Displaying 111-120 of 157
Sort by:
Attacker Value
Unknown
CVE-2006-4409
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The Online Certificate Status Protocol (OCSP) service in the Security Framework in Apple Mac OS X 10.4 through 10.4.8 retrieve certificate revocation lists (CRL) when an HTTP proxy is in use, which could cause the system to accept certificates that have been revoked.
0
Attacker Value
Unknown
CVE-2006-4411
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The VPN service in Apple Mac OS X 10.3.x through 10.3.9 and 10.4.x through 10.4.8 does not properly clean the environment when executing commands, which allows local users to gain privileges via unspecified vectors.
0
Attacker Value
Unknown
CVE-2006-4408
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The Security Framework in Apple Mac OS X 10.4 through 10.4.8 allows remote attackers to cause a denial of service (resource consumption) via certain public key values in an X.509 certificate that requires extra resources during signature verification. NOTE: this issue may be similar to CVE-2006-2940.
0
Attacker Value
Unknown
CVE-2006-4410
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The Security Framework in Apple Mac OS X 10.3.9, and 10.4.x before 10.4.7, does not properly search certificate revocation lists (CRL), which allows remote attackers to access systems by using revoked certificates.
0
Attacker Value
Unknown
CVE-2006-4412
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
WebKit in Apple Mac OS X 10.3.x through 10.3.9 and 10.4 through 10.4.8 allows remote attackers to execute arbitrary code via a crafted HTML file, which accesses previously deallocated objects.
0
Attacker Value
Unknown
CVE-2006-4406
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
Buffer overflow in PPP on Apple Mac OS X 10.4.x up to 10.4.8 and 10.3.x up to 10.3.9, when PPPoE is enabled, allows remote attackers to execute arbitrary code via unspecified vectors.
0
Attacker Value
Unknown
CVE-2006-4398
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
Multiple buffer overflows in the Apple Type Services (ATS) server in Mac OS X 10.4 through 10.4.8 allow local users to execute arbitrary code via crafted service requests.
0
Attacker Value
Unknown
CVE-2006-4391
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
Buffer overflow in Apple ImageIO on Apple Mac OS X 10.4 through 10.4.7 allows remote attackers to execute arbitrary code via a malformed JPEG2000 image.
0
Attacker Value
Unknown
CVE-2006-4399
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
User interface inconsistency in Workgroup Manager in Apple Mac OS X 10.4 through 10.4.7 appears to allow administrators to change the authentication type from crypt to ShadowHash passwords for accounts in a NetInfo parent, when such an operation is not actually supported, which could result in less secure password management than intended.
0
Attacker Value
Unknown
CVE-2006-4394
Disclosure Date: October 03, 2006 (last updated October 04, 2023)
A logic error in LoginWindow in Apple Mac OS X 10.4 through 10.4.7, allows network accounts without GUIds to bypass service access controls and log into the system using loginwindow via unknown vectors.
0