Show filters
131 Total Results
Displaying 91-100 of 131
Sort by:
Attacker Value
Unknown
CVE-2008-2312
Disclosure Date: September 16, 2008 (last updated October 04, 2023)
Network Preferences in Apple Mac OS X 10.4.11 stores PPP passwords in cleartext in a world-readable file, which allows local users to obtain sensitive information by reading this file.
0
Attacker Value
Unknown
CVE-2008-3621
Disclosure Date: September 16, 2008 (last updated October 04, 2023)
VideoConference in Apple Mac OS X 10.4.11 and 10.5 through 10.5.4 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via vectors involving H.264 encoded media.
0
Attacker Value
Unknown
CVE-2008-2324
Disclosure Date: August 04, 2008 (last updated October 04, 2023)
The Repair Permissions tool in Disk Utility in Apple Mac OS X 10.4.11 adds the setuid bit to the emacs executable file, which allows local users to gain privileges by executing commands within emacs.
0
Attacker Value
Unknown
CVE-2008-2313
Disclosure Date: July 01, 2008 (last updated October 04, 2023)
Apple Mac OS X before 10.5 uses weak permissions for the User Template directory, which allows local users to gain privileges by inserting a Trojan horse file into this directory.
0
Attacker Value
Unknown
CVE-2008-2314
Disclosure Date: July 01, 2008 (last updated October 04, 2023)
Dock in Apple Mac OS X 10.5 before 10.5.4, when Exposé hot corners is enabled, allows physically proximate attackers to gain access to a locked session in (1) sleep mode or (2) screen saver mode via unspecified vectors.
0
Attacker Value
Unknown
CVE-2008-2309
Disclosure Date: July 01, 2008 (last updated October 04, 2023)
Incomplete blacklist vulnerability in CoreTypes in Apple Mac OS X before 10.5.4 allows user-assisted remote attackers to execute arbitrary code via a (1) .xht or (2) .xhtm file, which does not trigger a "potentially unsafe" warning message in (a) the Download Validation feature in Mac OS X 10.4 or (b) the Quarantine feature in Mac OS X 10.5.
0
Attacker Value
Unknown
CVE-2008-2311
Disclosure Date: July 01, 2008 (last updated October 04, 2023)
Launch Services in Apple Mac OS X before 10.5, when Open Safe Files is enabled, allows remote attackers to execute arbitrary code via a symlink attack, probably related to a race condition and automatic execution of a downloaded file.
0
Attacker Value
Unknown
CVE-2008-2310
Disclosure Date: July 01, 2008 (last updated October 04, 2023)
Format string vulnerability in c++filt in Apple Mac OS X 10.5 before 10.5.4 allows user-assisted attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted string in (1) C++ or (2) Java source code.
0
Attacker Value
Unknown
CVE-2008-2308
Disclosure Date: July 01, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Alias Manager in Apple Mac OS X 10.5.1 and earlier on Intel platforms allows local users to gain privileges or cause a denial of service (memory corruption and application crash) by resolving an alias that contains crafted AFP volume mount information.
0
Attacker Value
Unknown
CVE-2008-1030
Disclosure Date: June 02, 2008 (last updated October 04, 2023)
Integer overflow in the CFDataReplaceBytes function in the CFData API in CoreFoundation in Apple Mac OS X before 10.5.3 allows context-dependent attackers to execute arbitrary code or cause a denial of service (crash) via an invalid length argument, which triggers a heap-based buffer overflow.
0