Show filters
108 Total Results
Displaying 21-30 of 108
Sort by:
Attacker Value
Unknown

CVE-2011-0230

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
Buffer overflow in the ATSFontDeactivate API in Apple Type Services (ATS) in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
0
Attacker Value
Unknown

CVE-2011-0224

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
CoreMedia in Apple Mac OS X through 10.6.8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted QuickTime movie file.
0
Attacker Value
Unknown

CVE-2011-3223

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
Buffer overflow in QuickTime in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLIC movie file.
0
Attacker Value
Unknown

CVE-2011-3215

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The kernel in Apple Mac OS X before 10.7.2 does not properly prevent FireWire DMA in the absence of a login, which allows physically proximate attackers to bypass intended access restrictions and discover a password by making a DMA request in the (1) loginwindow, (2) boot, or (3) shutdown state.
0
Attacker Value
Unknown

CVE-2011-3228

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
QuickTime in Apple Mac OS X before 10.7.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file.
0
Attacker Value
Unknown

CVE-2011-3218

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The "Save for Web" selection in QuickTime Player in Apple Mac OS X through 10.6.8 exports HTML documents that contain an http link to a script file, which allows man-in-the-middle attackers to conduct cross-site scripting (XSS) attacks by spoofing the http server during local viewing of an exported document.
0
Attacker Value
Unknown

CVE-2011-3216

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The kernel in Apple Mac OS X before 10.7.2 does not properly implement the sticky bit for directories, which might allow local users to bypass intended permissions and delete files via an unlink system call.
0
Attacker Value
Unknown

CVE-2011-0231

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
CFNetwork in Apple Mac OS X before 10.7.2 does not properly follow an intended cookie-storage policy, which makes it easier for remote web servers to track users via a cookie, related to a "synchronization issue."
0
Attacker Value
Unknown

CVE-2011-3227

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
libsecurity in Apple Mac OS X before 10.7.2 does not properly handle errors during processing of a nonstandard extension in a Certificate Revocation list (CRL), which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) a crafted (1) web site or (2) e-mail message.
0
Attacker Value
Unknown

CVE-2011-3214

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
IOGraphics in Apple Mac OS X through 10.6.8 does not properly handle a locked-screen state in display sleep mode for an Apple Cinema Display, which allows physically proximate attackers to bypass the password requirement via unspecified vectors.
0