Show filters
29 Total Results
Displaying 21-29 of 29
Sort by:
Attacker Value
Unknown

CVE-2012-3719

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mail in Apple Mac OS X before 10.7.5 does not properly handle embedded web plugins, which allows remote attackers to execute arbitrary plugin code via an e-mail message that triggers the loading of a third-party plugin.
0
Attacker Value
Unknown

CVE-2012-3716

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
CoreText in Apple Mac OS X 10.7.x before 10.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write or read) via a crafted text glyph.
0
Attacker Value
Unknown

CVE-2012-3718

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 allows local users to read passwords entered into Login Window (aka LoginWindow) or Screen Saver Unlock by installing an input method that intercepts keystrokes.
0
Attacker Value
Unknown

CVE-2012-3722

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The Sorenson codec in QuickTime in Apple Mac OS X before 10.7.5, and in CoreMedia in iOS before 6, accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
0
Attacker Value
Unknown

CVE-2012-3723

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 does not properly handle the bNbrPorts field of a USB hub descriptor, which allows physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption and system crash) by attaching a USB device.
0
Attacker Value
Unknown

CVE-2012-3721

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Profile Manager in Apple Mac OS X before 10.7.5 does not properly perform authentication for the Device Management private interface, which allows attackers to enumerate managed devices via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-3720

Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Mobile Accounts in Apple Mac OS X before 10.7.5 and 10.8.x before 10.8.2 saves password hashes for external-account use even if external accounts are not enabled, which might allow remote attackers to determine passwords via unspecified access to a mobile account.
0
Attacker Value
Unknown

CVE-2012-0652

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Login Window in Apple Mac OS X 10.7.3, when Legacy File Vault or networked home directories are enabled, does not properly restrict what is written to the system log for network logins, which allows local users to obtain sensitive information by reading the log.
0
Attacker Value
Unknown

CVE-2012-0656

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Race condition in LoginUIFramework in Apple Mac OS X 10.7.x before 10.7.4, when the Guest account is enabled, allows physically proximate attackers to login to arbitrary accounts by entering the account name and no password.
0