Show filters
377 Total Results
Displaying 211-220 of 377
Sort by:
Attacker Value
Unknown

CVE-2007-0728

Disclosure Date: March 13, 2007 (last updated October 04, 2023)
Unspecified vulnerability in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 creates files insecurely while initializing a USB printer, which allows local users to create or overwrite arbitrary files.
0
Attacker Value
Unknown

CVE-2007-0719

Disclosure Date: March 13, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in Apple Mac OS X 10.3.9 and 10.4 through 10.4.8 allows remote user-assisted attackers to execute arbitrary code via an image with a crafted ColorSync profile.
0
Attacker Value
Unknown

CVE-2007-1071

Disclosure Date: February 22, 2007 (last updated October 04, 2023)
Integer overflow in the gifGetBandProc function in ImageIO in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a crafted GIF image that triggers the overflow during decompression. NOTE: this is a different issue than CVE-2006-3502 and CVE-2006-3503.
0
Attacker Value
Unknown

CVE-2007-0614

Disclosure Date: January 31, 2007 (last updated October 04, 2023)
The Bonjour functionality in mDNSResponder, iChat 3.1.6, and InstantMessage framework 428 in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (persistent application crash) via a crafted phsh hash attribute in a TXT key.
0
Attacker Value
Unknown

CVE-2007-0467

Disclosure Date: January 31, 2007 (last updated October 04, 2023)
crashdump in Apple Mac OS X 10.4.8 allows local users in the admin group to modify arbitrary files or gain privileges via a symlink attack on application logs in /Library/Logs/CrashReporter/.
0
Attacker Value
Unknown

CVE-2007-0465

Disclosure Date: January 31, 2007 (last updated October 04, 2023)
Format string vulnerability in Apple Installer 2.1.5 on Mac OS X 10.4.8 allows user-assisted remote attackers to execute arbitrary code via format string specifiers in a (1) PKG, (2) DISTZ, or (3) MPKG package filename.
0
Attacker Value
Unknown

CVE-2007-0588

Disclosure Date: January 30, 2007 (last updated October 04, 2023)
The InternalUnpackBits function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT file that triggers memory corruption in the _GetSrcBits32ARGB function. NOTE: this issue might overlap CVE-2007-0462.
0
Attacker Value
Unknown

CVE-2007-0462

Disclosure Date: January 26, 2007 (last updated October 04, 2023)
The _GetSrcBits32ARGB function in Apple QuickDraw, as used by Quicktime 7.1.3 and other applications on Mac OS X 10.4.8 and earlier, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PICT image with a malformed Alpha RGB (ARGB) record, which triggers memory corruption.
0
Attacker Value
Unknown

CVE-2007-0023

Disclosure Date: January 24, 2007 (last updated October 04, 2023)
The CFUserNotificationSendRequest function in UserNotificationCenter.app in Apple Mac OS X 10.4.8, when used in combination with diskutil, allows local users to gain privileges via a malicious InputManager in Library/InputManagers in a user's home directory, which is executed when Cocoa applications attempt to notify the user.
0
Attacker Value
Unknown

CVE-2007-0022

Disclosure Date: January 23, 2007 (last updated October 04, 2023)
Untrusted search path vulnerability in writeconfig in Apple Mac OS X 10.4.8 allows local users to gain privileges via a modified PATH that points to a malicious launchctl program.
0