Show filters
72 Total Results
Displaying 61-70 of 72
Sort by:
Attacker Value
Unknown
CVE-2009-2196
Disclosure Date: August 12, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Apple Safari 4 before 4.0.3 allows remote web servers to place an arbitrary web site in the Top Sites view, and possibly conduct phishing attacks, via unknown vectors.
0
Attacker Value
Unknown
CVE-2009-2188
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Buffer overflow in ImageIO in Apple Mac OS X 10.5 before 10.5.8, and Safari before 4.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an image with crafted EXIF metadata.
0
Attacker Value
Unknown
CVE-2009-1727
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X 10.5 before 10.5.8 makes it easier for user-assisted remote attackers to execute arbitrary JavaScript via a web page that offers a download with a Content-Type value that is not on the list of possibly unsafe content types for Safari.
0
Attacker Value
Unknown
CVE-2009-2194
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Apple Mac OS X 10.5 before 10.5.8 does not properly share file descriptors over local sockets, which allows local users to cause a denial of service (system crash) by placing file descriptors in messages sent to a socket that has no receiver, related to a "synchronization issue."
0
Attacker Value
Unknown
CVE-2009-2190
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
launchd in Apple Mac OS X 10.5 before 10.5.8 allows remote attackers to cause a denial of service (individual service outage) by making many connections to an inetd-based launchd service.
0
Attacker Value
Unknown
CVE-2009-1726
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Heap-based buffer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted image containing an embedded ColorSync profile.
0
Attacker Value
Unknown
CVE-2009-2192
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
MobileMe in Apple Mac OS X 10.5 before 10.5.8 does not properly delete credentials upon signout from the preference pane, which makes it easier for attackers to hijack a MobileMe session via unspecified vectors, related to a "logic issue."
0
Attacker Value
Unknown
CVE-2009-2193
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Buffer overflow in the kernel in Apple Mac OS X 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (system crash) via a crafted AppleTalk response packet.
0
Attacker Value
Unknown
CVE-2009-1728
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in Image RAW in Apple Mac OS X 10.5 before 10.5.8, and 10.4 before Digital Camera RAW Compatibility Update 2.6, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Canon RAW image.
0
Attacker Value
Unknown
CVE-2009-2191
Disclosure Date: August 06, 2009 (last updated October 04, 2023)
Format string vulnerability in Login Window in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (application crash) via format string specifiers in an application name.
0