Show filters
89 Total Results
Displaying 61-70 of 89
Sort by:
Attacker Value
Unknown

CVE-2005-2714

Disclosure Date: December 31, 2005 (last updated February 22, 2025)
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to overwrite arbitrary files via a symlink attack on the .pwtmp.[PID] temporary file.
0
Attacker Value
Unknown

CVE-2005-2713

Disclosure Date: December 31, 2005 (last updated February 22, 2025)
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to create arbitrary world-writable files as root by specifying an alternate file in the password database option.
0
Attacker Value
Unknown

CVE-2005-4504

Disclosure Date: December 22, 2005 (last updated February 22, 2025)
The khtml::RenderTableSection::ensureRows function in KHTMLParser in Apple Mac OS X 10.4.3 and earlier, as used by Safari and TextEdit, allows remote attackers to cause a denial of service (memory consumption and application crash) via HTML files with a large ROWSPAN attribute in a TD tag.
0
Attacker Value
Unknown

CVE-2005-2757

Disclosure Date: December 01, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in CoreFoundation in Mac OS X and OS X Server 10.4 through 10.4.3 allows remote attackers to execute arbitrary code via unknown attack vectors involving "validation of URLs."
0
Attacker Value
Unknown

CVE-2005-2739

Disclosure Date: November 01, 2005 (last updated February 22, 2025)
Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times out while the password is being viewed, which could allow attackers with physical access to obtain the password.
0
Attacker Value
Unknown

CVE-2005-2744

Disclosure Date: October 25, 2005 (last updated February 22, 2025)
Buffer overflow in QuickDraw Manager for Apple OS X 10.3.9 and 10.4.2, as used by applications such as Safari, Mail, and Finder, allows remote attackers to execute arbitrary code via a crafted PICT file.
0
Attacker Value
Unknown

CVE-2005-2509

Disclosure Date: August 19, 2005 (last updated February 22, 2025)
Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.
0
Attacker Value
Unknown

CVE-2005-0972

Disclosure Date: May 12, 2005 (last updated February 22, 2025)
Integer overflow in the searchfs system call in Mac OS X 10.3.9 and earlier allows local users to execute arbitrary code via crafted parameters.
0
Attacker Value
Unknown

CVE-2005-1341

Disclosure Date: May 04, 2005 (last updated February 22, 2025)
Apple Terminal 1.4.4 allows attackers to execute arbitrary commands via terminal escape sequences.
0
Attacker Value
Unknown

CVE-2005-1331

Disclosure Date: May 04, 2005 (last updated February 22, 2025)
The AppleScript Editor in Mac OS X 10.3.9 does not properly display script code for an applescript: URI, which can result in code that is different than the actual code that would be run, which could allow remote attackers to trick users into executing malicious code via certain URI characters such as NULL, control characters, and homographs.
0