Show filters
377 Total Results
Displaying 231-240 of 377
Sort by:
Attacker Value
Unknown
CVE-2006-5681
Disclosure Date: December 20, 2006 (last updated October 04, 2023)
QuickTime for Java on Mac OS X 10.4 through 10.4.8, when used with Quartz Composer, allows remote attackers to obtain sensitive information (screen images) via a Java applet that accesses images that are being rendered by other embedded QuickTime objects.
0
Attacker Value
Unknown
CVE-2006-6652
Disclosure Date: December 20, 2006 (last updated October 04, 2023)
Buffer overflow in the glob implementation (glob.c) in libc in NetBSD-current before 20050914, NetBSD 2.* and 3.* before 20061203, and Apple Mac OS X before 2007-004, as used by the FTP daemon and tnftpd, allows remote authenticated users to execute arbitrary code via a long pathname that results from path expansion.
0
Attacker Value
Unknown
CVE-2006-6353
Disclosure Date: December 07, 2006 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in BOMArchiveHelper in Mac OS X allow user-assisted remote attackers to cause a denial of service (application crash) via unspecified vectors related to (1) certain KERN_PROTECTION_FAILURE thread crashes and (2) certain KERN_INVALID_ADDRESS thread crashes, as discovered with the "iSec Partners FileP fuzzer".
0
Attacker Value
Unknown
CVE-2006-6292
Disclosure Date: December 05, 2006 (last updated October 04, 2023)
Apple Airport Extreme firmware 0.1.27 in Mac OS X 10.4.8 on Mac mini, MacBook, and MacBook Pro with Core Duo hardware allows remote attackers to cause a denial of service (out-of-bounds memory access and kernel panic) and have possibly other security-related impact via certain beacon frames.
0
Attacker Value
Unknown
CVE-2006-4409
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The Online Certificate Status Protocol (OCSP) service in the Security Framework in Apple Mac OS X 10.4 through 10.4.8 retrieve certificate revocation lists (CRL) when an HTTP proxy is in use, which could cause the system to accept certificates that have been revoked.
0
Attacker Value
Unknown
CVE-2006-4411
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The VPN service in Apple Mac OS X 10.3.x through 10.3.9 and 10.4.x through 10.4.8 does not properly clean the environment when executing commands, which allows local users to gain privileges via unspecified vectors.
0
Attacker Value
Unknown
CVE-2006-4408
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The Security Framework in Apple Mac OS X 10.4 through 10.4.8 allows remote attackers to cause a denial of service (resource consumption) via certain public key values in an X.509 certificate that requires extra resources during signature verification. NOTE: this issue may be similar to CVE-2006-2940.
0
Attacker Value
Unknown
CVE-2006-4410
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
The Security Framework in Apple Mac OS X 10.3.9, and 10.4.x before 10.4.7, does not properly search certificate revocation lists (CRL), which allows remote attackers to access systems by using revoked certificates.
0
Attacker Value
Unknown
CVE-2006-4412
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
WebKit in Apple Mac OS X 10.3.x through 10.3.9 and 10.4 through 10.4.8 allows remote attackers to execute arbitrary code via a crafted HTML file, which accesses previously deallocated objects.
0
Attacker Value
Unknown
CVE-2006-4406
Disclosure Date: November 30, 2006 (last updated October 04, 2023)
Buffer overflow in PPP on Apple Mac OS X 10.4.x up to 10.4.8 and 10.3.x up to 10.3.9, when PPPoE is enabled, allows remote attackers to execute arbitrary code via unspecified vectors.
0