Show filters
174 Total Results
Displaying 141-150 of 174
Sort by:
Attacker Value
Unknown

CVE-2010-0514

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.261 encoding.
0
Attacker Value
Unknown

CVE-2010-0516

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with RLE encoding, which triggers memory corruption when the length of decompressed data exceeds that of the allocated heap chunk.
0
Attacker Value
Unknown

CVE-2010-0517

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with M-JPEG encoding, which causes QuickTime to calculate a buffer size using height and width fields, but to use a different field to control the length of a copy operation.
0
Attacker Value
Unknown

CVE-2010-0508

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Mail in Apple Mac OS X before 10.6.3 does not disable the filter rules associated with a deleted mail account, which has unspecified impact and attack vectors.
0
Attacker Value
Unknown

CVE-2010-0497

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Disk Images in Apple Mac OS X before 10.6.3 does not provide the expected warning for an unsafe file type in an internet enabled disk image, which makes it easier for user-assisted remote attackers to execute arbitrary code via a package file type.
0
Attacker Value
Unknown

CVE-2010-0511

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Podcast Producer in Apple Mac OS X 10.6 before 10.6.3 deletes the access restrictions of a Podcast Composer workflow when this workflow is overwritten, which allows attackers to access a workflow via unspecified vectors.
0
Attacker Value
Unknown

CVE-2010-0512

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The Accounts Preferences implementation in Apple Mac OS X 10.6 before 10.6.3, when a network account server is used, does not support Login Window access control that is based solely on group membership, which allows attackers to bypass intended access restrictions by entering login credentials.
0
Attacker Value
Unknown

CVE-2010-0534

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Wiki Server in Apple Mac OS X 10.6 before 10.6.3 does not enforce the service access control list (SACL) for weblogs during weblog creation, which allows remote authenticated users to publish content via HTTP requests.
0
Attacker Value
Unknown

CVE-2010-0521

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.
0
Attacker Value
Unknown

CVE-2010-0524

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The default configuration of the FreeRADIUS server in Apple Mac OS X Server before 10.6.3 permits EAP-TLS authenticated connections on the basis of an arbitrary client certificate, which allows remote attackers to obtain network connectivity via a crafted RADIUS Access Request message.
0