Show filters
377 Total Results
Displaying 71-80 of 377
Sort by:
Attacker Value
Unknown
CVE-2009-1236
Disclosure Date: April 02, 2009 (last updated October 04, 2023)
Heap-based buffer overflow in the AppleTalk networking stack in XNU 1228.3.13 and earlier on Apple Mac OS X 10.5.6 and earlier allows remote attackers to cause a denial of service (system crash) via a ZIP NOTIFY (aka ZIPOP_NOTIFY) packet that overwrites a certain ifPort structure member.
0
Attacker Value
Unknown
CVE-2009-0017
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
csregprinter in the Printing component in Apple Mac OS X 10.4.11 and 10.5.6 does not properly handle error conditions, which allows local users to execute arbitrary code via unknown vectors that trigger a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2009-0013
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
dscl in DS Tools in Apple Mac OS X 10.4.11 and 10.5.6 requires that passwords must be provided as command line arguments, which allows local users to gain privileges by listing process information.
0
Attacker Value
Unknown
CVE-2009-0141
Disclosure Date: February 13, 2009 (last updated January 26, 2024)
XTerm in Apple Mac OS X 10.4.11 and 10.5.6, when used with luit, creates tty devices with insecure world-writable permissions, which allows local users to write to the Xterm of another user.
0
Attacker Value
Unknown
CVE-2009-0009
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the Pixlet codec in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) and possibly execute arbitrary code via a crafted movie file that triggers memory corruption.
0
Attacker Value
Unknown
CVE-2009-0019
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
Remote Apple Events in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) or obtain sensitive information via unspecified vectors that trigger an out-of-bounds memory access.
0
Attacker Value
Unknown
CVE-2009-0020
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
Unspecified vulnerability in CarbonCore in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via a crafted resource fork that triggers memory corruption.
0
Attacker Value
Unknown
CVE-2009-0018
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
The Remote Apple Events server in Apple Mac OS X 10.4.11 and 10.5.6 does not properly initialize a buffer, which allows remote attackers to read portions of memory.
0
Attacker Value
Unknown
CVE-2009-0140
Disclosure Date: February 13, 2009 (last updated October 04, 2023)
Unspecified vulnerability in the SMB component in Apple Mac OS X 10.4.11 and 10.5.6 allows remote SMB servers to cause a denial of service (memory exhaustion and system shutdown) via a crafted file system name.
0
Attacker Value
Unknown
CVE-2008-4220
Disclosure Date: December 17, 2008 (last updated October 04, 2023)
Integer overflow in the inet_net_pton API in Libsystem in Apple Mac OS X before 10.5.6 allows context-dependent attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors. NOTE: this may be related to the WLB-2008080064 advisory published by SecurityReason on 20080822; however, as of 20081216, there are insufficient details to be sure.
0