Show filters
65 Total Results
Displaying 51-60 of 65
Sort by:
Attacker Value
Unknown
CVE-2005-2739
Disclosure Date: November 01, 2005 (last updated February 22, 2025)
Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times out while the password is being viewed, which could allow attackers with physical access to obtain the password.
0
Attacker Value
Unknown
CVE-2005-2509
Disclosure Date: August 19, 2005 (last updated February 22, 2025)
Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.
0
Attacker Value
Unknown
CVE-2005-0972
Disclosure Date: May 12, 2005 (last updated February 22, 2025)
Integer overflow in the searchfs system call in Mac OS X 10.3.9 and earlier allows local users to execute arbitrary code via crafted parameters.
0
Attacker Value
Unknown
CVE-2005-1430
Disclosure Date: May 03, 2005 (last updated February 22, 2025)
Mac OS X 10.3.x and earlier uses insecure permissions for a pseudo terminal tty (pty) that is managed by a non-setuid program, which allows local users to read or modify sessions of other users.
0
Attacker Value
Unknown
CVE-2005-0342
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
The Finder in Mac OS X and earlier allows local users to overwrite arbitrary files and gain privileges by creating a hard link from the .DS_Store file to an arbitrary file.
0
Attacker Value
Unknown
CVE-2005-0373
Disclosure Date: October 07, 2004 (last updated February 22, 2025)
Buffer overflow in digestmd5.c CVS release 1.170 (also referred to as digestmda5.c), as used in the DIGEST-MD5 SASL plugin for Cyrus-SASL but not in any official releases, allows remote attackers to execute arbitrary code.
0
Attacker Value
Unknown
CVE-2003-1006
Disclosure Date: March 29, 2004 (last updated February 22, 2025)
Buffer overflow in cd9660.util in Apple Mac OS X 10.0 through 10.3.2 and Apple Mac OS X Server 10.0 through 10.3.2 may allow local users to execute arbitrary code via a long command line parameter.
0
Attacker Value
Unknown
CVE-2004-0165
Disclosure Date: March 15, 2004 (last updated February 22, 2025)
Format string vulnerability in Point-to-Point Protocol (PPP) daemon (pppd) 2.4.0 for Mac OS X 10.3.2 and earlier allows remote attackers to read arbitrary pppd process data, including PAP or CHAP authentication credentials, to gain privileges.
0
Attacker Value
Unknown
CVE-2003-0876
Disclosure Date: November 03, 2003 (last updated February 22, 2025)
Finder in Mac OS X 10.2.8 and earlier sets global read/write/execute permissions on directories when they are dragged (copied) from a mounted volume such as a disk image (DMG), which could cause the directories to have less restrictive permissions than intended.
0
Attacker Value
Unknown
CVE-2003-0171
Disclosure Date: May 05, 2003 (last updated February 22, 2025)
DirectoryServices in MacOS X trusts the PATH environment variable to locate and execute the touch command, which allows local users to execute arbitrary commands by modifying the PATH to point to a directory containing a malicious touch program.
0