Show filters
54 Total Results
Displaying 41-50 of 54
Sort by:
Attacker Value
Unknown

CVE-2011-3457

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
The OpenGL implementation in Apple Mac OS X before 10.7.3 does not properly perform OpenGL Shading Language (aka GLSL) compilation, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted program.
0
Attacker Value
Unknown

CVE-2011-3449

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
Use-after-free vulnerability in CoreText in Apple Mac OS X before 10.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted embedded font in a document.
0
Attacker Value
Unknown

CVE-2011-3447

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
CFNetwork in Apple Mac OS X 10.7.x before 10.7.3 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensitive information via a malformed URL.
0
Attacker Value
Unknown

CVE-2011-3450

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
CoreUI in Apple Mac OS X 10.7.x before 10.7.3 does not properly restrict the allocation of stack memory, which allows remote attackers to execute arbitrary code or cause a denial of service (memory consumption and application crash) via a long URL.
0
Attacker Value
Unknown

CVE-2011-3444

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
Address Book in Apple Mac OS X before 10.7.3 automatically switches to unencrypted sessions upon failure of encrypted connections, which allows remote attackers to read CardDAV data by terminating an encrypted connection and then sniffing the network.
0
Attacker Value
Unknown

CVE-2011-3453

Disclosure Date: February 02, 2012 (last updated October 04, 2023)
Integer overflow in libresolv in Apple Mac OS X before 10.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via crafted DNS data.
0
Attacker Value
Unknown

CVE-2011-3246

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
CFNetwork in Apple iOS before 5.0.1 and Mac OS X 10.7 before 10.7.2 does not properly parse URLs, which allows remote attackers to trigger visits to unintended web sites, and transmission of cookies to unintended web sites, via a crafted (1) http or (2) https URL.
0
Attacker Value
Unknown

CVE-2011-3225

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The SMB File Server component in Apple Mac OS X 10.7 before 10.7.2 does not prevent all guest users from accessing the share point record of a guest-restricted folder, which allows remote attackers to bypass intended browsing restrictions by leveraging access to the nobody account.
0
Attacker Value
Unknown

CVE-2011-3437

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
Integer signedness error in Apple Type Services (ATS) in Apple Mac OS X 10.7 before 10.7.2 allows remote attackers to execute arbitrary code via a crafted embedded Type 1 font in a document.
0
Attacker Value
Unknown

CVE-2011-0260

Disclosure Date: October 14, 2011 (last updated October 04, 2023)
The CoreProcesses component in Apple Mac OS X 10.7 before 10.7.2 does not prevent a system window from receiving keystrokes in the locked-screen state, which might allow physically proximate attackers to bypass intended access restrictions by typing into this window.
0