Show filters
42 Total Results
Displaying 31-40 of 42
Sort by:
Attacker Value
Unknown

CVE-2012-0657

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Quartz Composer in Apple Mac OS X before 10.7.4, when the RSS Visualizer screensaver is enabled, allows physically proximate attackers to bypass screen locking and launch a Safari process via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-0662

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Integer overflow in the Security Framework in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted input.
0
Attacker Value
Unknown

CVE-2012-0658

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Buffer overflow in QuickTime in Apple Mac OS X before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted audio sample tables in a movie file that is progressively downloaded.
0
Attacker Value
Unknown

CVE-2012-0656

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Race condition in LoginUIFramework in Apple Mac OS X 10.7.x before 10.7.4, when the Guest account is enabled, allows physically proximate attackers to login to arbitrary accounts by entering the account name and no password.
0
Attacker Value
Unknown

CVE-2012-0649

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Race condition in the initialization routine in blued in Bluetooth in Apple Mac OS X before 10.7.4 allows local users to gain privileges via vectors involving a temporary file.
0
Attacker Value
Unknown

CVE-2012-0655

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
libsecurity in Apple Mac OS X before 10.7.4 does not properly restrict the length of RSA keys within X.509 certificates, which makes it easier for remote attackers to defeat cryptographic protection mechanisms by conducting a spoofing or network-sniffing attack during communication with a site that uses a short key.
0
Attacker Value
Unknown

CVE-2012-0661

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
Use-after-free vulnerability in QuickTime in Apple Mac OS X 10.7.x before 10.7.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with JPEG2000 encoding.
0
Attacker Value
Unknown

CVE-2012-0654

Disclosure Date: May 11, 2012 (last updated October 04, 2023)
libsecurity in Apple Mac OS X before 10.7.4 accesses uninitialized memory locations during the processing of X.509 certificates, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted certificate.
0
Attacker Value
Unknown

CVE-2011-3463

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
WebDAV Sharing in Apple Mac OS X 10.7.x before 10.7.3 does not properly perform authentication, which allows local users to gain privileges by leveraging access to (1) the server or (2) a bound directory.
0
Attacker Value
Unknown

CVE-2011-3447

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
CFNetwork in Apple Mac OS X 10.7.x before 10.7.3 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL.
0