Show filters
156 Total Results
Displaying 141-150 of 156
Sort by:
Attacker Value
Unknown

CVE-2010-0521

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.
0
Attacker Value
Unknown

CVE-2010-0512

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The Accounts Preferences implementation in Apple Mac OS X 10.6 before 10.6.3, when a network account server is used, does not support Login Window access control that is based solely on group membership, which allows attackers to bypass intended access restrictions by entering login credentials.
0
Attacker Value
Unknown

CVE-2010-0524

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
The default configuration of the FreeRADIUS server in Apple Mac OS X Server before 10.6.3 permits EAP-TLS authenticated connections on the basis of an arbitrary client certificate, which allows remote attackers to obtain network connectivity via a crafted RADIUS Access Request message.
0
Attacker Value
Unknown

CVE-2010-0537

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
DesktopServices in Apple Mac OS X 10.6 before 10.6.3 does not properly resolve pathnames in certain circumstances involving an application's save panel, which allows user-assisted remote attackers to trigger unintended remote file copying via a crafted share name.
0
Attacker Value
Unknown

CVE-2010-0062

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in quicktime.qts in CoreMedia and QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed .3g2 movie file with H.263 encoding that triggers an incorrect buffer length calculation.
0
Attacker Value
Unknown

CVE-2010-0526

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
Heap-based buffer overflow in QuickTimeMPEG.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted genl atom in a QuickTime movie file with MPEG encoding, which is not properly handled during decompression.
0
Attacker Value
Unknown

CVE-2010-0060

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDMC encoding.
0
Attacker Value
Unknown

CVE-2010-0518

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with Sorenson encoding.
0
Attacker Value
Unknown

CVE-2010-0064

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
DesktopServices in Apple Mac OS X 10.6 before 10.6.3 preserves file ownership during an authenticated Finder copy, which might allow local users to bypass intended disk-quota restrictions and have unspecified other impact by copying files owned by other users.
0
Attacker Value
Unknown

CVE-2010-0515

Disclosure Date: March 30, 2010 (last updated October 04, 2023)
QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with H.264 encoding.
0