Show filters
128 Total Results
Displaying 91-100 of 128
Sort by:
Attacker Value
Unknown

CVE-2005-0713

Disclosure Date: March 21, 2005 (last updated February 22, 2025)
The Bluetooth Setup Assistant for Mac OS X before 10.3.8 can be launched without a keyboard or Bluetooth device, which allows local users to bypass access restrictions and gain privileges.
0
Attacker Value
Unknown

CVE-2005-0715

Disclosure Date: March 21, 2005 (last updated February 22, 2025)
AFP Server in Mac OS X before 10.3.8 uses insecure permissions for "Drop Boxes," which allows local users to read the contents of a Drop Box.
0
Attacker Value
Unknown

CVE-2005-0716

Disclosure Date: March 21, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in the Core Foundation Library in Mac OS X 10.3.5 and 10.3.6, and possibly earlier versions, allows local users to execute arbitrary code via a long CF_CHARSET_PATH environment variable.
0
Attacker Value
Unknown

CVE-2004-0922

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
AFP Server on Mac OS X 10.3.x to 10.3.5, under certain conditions, does not properly set the guest group ID, which causes AFP to change a write-only AFP Drop Box to be read-write when the Drop Box is on a share that is mounted by a guest, which allows attackers to read the Drop Box.
0
Attacker Value
Unknown

CVE-2004-0924

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
NetInfo Manager on Mac OS X 10.3.x through 10.3.5, after an initial root login, reports the root account as being disabled, even when it has not.
0
Attacker Value
Unknown

CVE-2004-0921

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenticated user mounts" via modified SessionDestroy packets.
0
Attacker Value
Unknown

CVE-2004-0927

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
ServerAdmin in Mac OS X 10.2.8 through 10.3.5 uses the same example self-signed certificate on each system, which allows remote attackers to decrypt sessions.
0
Attacker Value
Unknown

CVE-2004-0926

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attackers to execute arbitrary code via a certain BMP image.
0
Attacker Value
Unknown

CVE-2004-0925

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
Postfix on Mac OS X 10.3.x through 10.3.5, with SMTPD AUTH enabled, does not properly clear the username between authentication attempts, which allows users with the longest username to prevent other valid users from being able to authenticate.
0
Attacker Value
Unknown

CVE-2004-0886

Disclosure Date: January 27, 2005 (last updated February 22, 2025)
Multiple integer overflows in libtiff 3.6.1 and earlier allow remote attackers to cause a denial of service (crash or memory corruption) via TIFF images that lead to incorrect malloc calls.
0