Skip to main content

Vendor/product archive

apple / mac_os_x CVEs

Beta · best-effort

5,565 CVEs tagged to apple / mac_os_x1,424 Critical, 2,236 High, 1,693 Medium, 212 Low, 0 Unrated.

CVE-2005-2749

Published Nov 1, 2005

Unspecified vulnerability in the Finder Get Info window for Mac OS X 10.4 up to 10.4.2 causes Finder to misrepresent file and group ownership information. NOTE: it is not clear w…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2751

Published Nov 1, 2005

memberd in Mac OS X 10.4 up to 10.4.2, in certain situations, does not quickly synchronize access control checks with changes in group membership, which could allow users to acces…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2752

Published Nov 1, 2005

An unspecified kernel interface in Mac OS X 10.4.2 and earlier does not properly clear memory before reusing it, which could allow attackers to obtain sensitive information, a dif…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2742

Published Oct 26, 2005

SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the "Switch User..." button to appear even though the "Enable fast user switching" setting is disabl…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2745

Published Oct 26, 2005

Mail.app in Mail for Apple Mac OS X 10.3.9, when using Kerberos 5 for SMTP authentication, can include uninitialized memory in a message, which might allow remote attackers to obt…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2746

Published Oct 26, 2005

Mail.app in Mail for Apple Mac OS X 10.3.9 and 10.4.2 includes message contents when using auto-reply rules, which could cause Mail.app to include decrypted message contents for e…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2744

Published Oct 25, 2005

Buffer overflow in QuickDraw Manager for Apple OS X 10.3.9 and 10.4.2, as used by applications such as Safari, Mail, and Finder, allows remote attackers to execute arbitrary code…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2747

Published Oct 25, 2005

Buffer overflow in ImageIO for Apple Mac OS X 10.4.2, as used by applications such as WebCore and Safari, allows remote attackers to execute arbitrary code via a crafted GIF file.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2748

Published Oct 25, 2005

The malloc function in the libSystem library in Apple Mac OS X 10.3.9 and 10.4.2 allows local users to overwrite arbitrary files by setting the MallocLogFile environment variable…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2501

Published Aug 19, 2005

Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2 allows external user-assisted attackers to execute arbitrary code via a crafted Rich Text Format (RTF) file.

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2502

Published Aug 19, 2005

Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit, allows external user-assisted attackers to execute arbitrary code via a crafted…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2503

Published Aug 19, 2005

AppKit for Mac OS X 10.3.9 and 10.4.2 allows attackers with physical access to create local accounts by forcing a particular error to occur at the login window.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2504

Published Aug 19, 2005

The System Profiler in Mac OS X 10.4.2 labels a Bluetooth device with "Requires Authentication: No" even when the user has selected the "Require pairing for security" option, whic…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2505

Published Aug 19, 2005

Buffer overflow in CoreFoundation in Mac OS X 10.3.9 allows attackers to execute arbitrary code via command line arguments to an application that uses CoreFoundation.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2506

Published Aug 19, 2005

Algorithmic complexity vulnerability in CoreFoundation in Mac OS X 10.3.9 and 10.4.2 allows attackers to cause a denial of service (CPU consumption) via crafted Gregorian dates.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2509

Published Aug 19, 2005

Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2511

Published Aug 19, 2005

Unknown vulnerability in Mac OS X 10.4.2 and earlier, when using Kerberos authentication with LDAP, allows attackers to gain access to a root Terminal window.

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2005-2512

Published Aug 19, 2005

Mail.app in Mac OS 10.4.2 and earlier, when printing or forwarding an HTML message, loads remote images even when the user's preferences state otherwise, which could result in a p…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2513

Published Aug 19, 2005

Unknown vulnerability in HItoolbox for Mac OS X 10.4.2 allows VoiceOver services to read secure input fields.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2514

Published Aug 19, 2005

Buffer overflow in ping in Mac OS X 10.3.9 allows local users to execute arbitrary code.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2005-2515

Published Aug 19, 2005

Quartz Composer Screen Saver in Mac OS X 10.4.2 allows local users to access links from the RSS Visualizer even when a password is required.

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 5,376-5,400 of 5,565 CVEsPage 216 of 223