Show filters
54 Total Results
Displaying 21-30 of 54
Sort by:
Attacker Value
Unknown
CVE-2012-3722
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
The Sorenson codec in QuickTime in Apple Mac OS X before 10.7.5, and in CoreMedia in iOS before 6, accesses uninitialized memory locations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with Sorenson encoding.
0
Attacker Value
Unknown
CVE-2012-3723
Disclosure Date: September 20, 2012 (last updated October 05, 2023)
Apple Mac OS X before 10.7.5 does not properly handle the bNbrPorts field of a USB hub descriptor, which allows physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption and system crash) by attaching a USB device.
0
Attacker Value
Unknown
CVE-2012-0675
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Time Machine in Apple Mac OS X before 10.7.4 does not require continued use of SRP-based authentication after this authentication method is first used, which allows remote attackers to read Time Capsule credentials by spoofing the backup volume.
0
Attacker Value
Unknown
CVE-2012-0660
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Buffer underflow in QuickTime in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG file.
0
Attacker Value
Unknown
CVE-2012-0659
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Integer overflow in QuickTime in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted MPEG file.
0
Attacker Value
Unknown
CVE-2012-0657
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Quartz Composer in Apple Mac OS X before 10.7.4, when the RSS Visualizer screensaver is enabled, allows physically proximate attackers to bypass screen locking and launch a Safari process via unspecified vectors.
0
Attacker Value
Unknown
CVE-2012-0662
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Integer overflow in the Security Framework in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted input.
0
Attacker Value
Unknown
CVE-2012-0658
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Buffer overflow in QuickTime in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted audio sample tables in a movie file that is progressively downloaded.
0
Attacker Value
Unknown
CVE-2012-0649
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Race condition in the initialization routine in blued in Bluetooth in Apple Mac OS X before 10.7.4 allows local users to gain privileges via vectors involving a temporary file.
0
Attacker Value
Unknown
CVE-2012-0655
Disclosure Date: May 11, 2012 (last updated October 04, 2023)
libsecurity in Apple Mac OS X before 10.7.4 does not properly restrict the length of RSA keys within X.509 certificates, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by conducting a spoofing or network-sniffing attack during communication with a site that uses a short key.
0