Show filters
377 Total Results
Displaying 171-180 of 377
Sort by:
Attacker Value
Unknown

CVE-2007-4683

Disclosure Date: November 15, 2007 (last updated October 04, 2023)
Directory traversal vulnerability in the kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to bypass the chroot mechanism via a relative path when changing the current working directory.
0
Attacker Value
Unknown

CVE-2007-4676

Disclosure Date: November 07, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Poly type (0x0070 through 0x0074) and (2) PackBitsRgn field (0x0099) opcodes in a PICT image.
0
Attacker Value
Unknown

CVE-2007-4675

Disclosure Date: November 07, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in the QuickTime VR extension 7.2.0.240 in QuickTime.qts in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via a QTVR (QuickTime Virtual Reality) movie file containing a large size field in the atom header of a panorama sample atom.
0
Attacker Value
Unknown

CVE-2007-1661

Disclosure Date: November 07, 2007 (last updated October 04, 2023)
Perl-Compatible Regular Expression (PCRE) library before 7.3 backtracks too far when matching certain input bytes against some regex patterns in non-UTF-8 mode, which allows context-dependent attackers to obtain sensitive information or cause a denial of service (crash), as demonstrated by the "\X?\d" and "\P{L}?\d" patterns.
0
Attacker Value
Unknown

CVE-2007-3751

Disclosure Date: November 07, 2007 (last updated October 04, 2023)
Unspecified vulnerability in QuickTime for Java in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via untrusted Java applets that gain privileges via unspecified vectors.
0
Attacker Value
Unknown

CVE-2007-4677

Disclosure Date: November 07, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.
0
Attacker Value
Unknown

CVE-2007-2404

Disclosure Date: August 03, 2007 (last updated October 04, 2023)
CRLF injection vulnerability in CFNetwork on Apple Mac OS X 10.3.9 and 10.4.10 before 20070731 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in an unspecified context. NOTE: this can be leveraged for cross-site scripting (XSS) attacks.
0
Attacker Value
Unknown

CVE-2007-3744

Disclosure Date: August 03, 2007 (last updated October 04, 2023)
Heap-based buffer overflow in the UPnP IGD (Internet Gateway Device Standardized Device Control Protocol) implementation in mDNSResponder on Apple Mac OS X 10.4.10 before 20070731 allows network-adjacent remote attackers to execute arbitrary code via a crafted packet.
0
Attacker Value
Unknown

CVE-2007-3828

Disclosure Date: July 17, 2007 (last updated October 04, 2023)
Unspecified vulnerability in mDNSResponder in Apple Mac OS X allows remote attackers to execute arbitrary code via unspecified vectors, a related issue to CVE-2007-2386.
0
Attacker Value
Unknown

CVE-2007-1863

Disclosure Date: June 27, 2007 (last updated February 16, 2024)
cache_util.c in the mod_cache module in Apache HTTP Server (httpd), when caching is enabled and a threaded Multi-Processing Module (MPM) is used, allows remote attackers to cause a denial of service (child processing handler crash) via a request with the (1) s-maxage, (2) max-age, (3) min-fresh, or (4) max-stale Cache-Control headers without a value.
0