Vulnerabilities > Apple > Iphoto

DATE CVE VULNERABILITY TITLE RISK
2008-03-18 CVE-2008-0987 Buffer Errors vulnerability in Apple Aperture and Iphoto
Stack-based buffer overflow in Image Raw in Apple Mac OS X 10.5.2, and Digital Camera RAW Compatibility before Update 2.0 for Aperture 2 and iPhoto 7.1.2, allows remote attackers to execute arbitrary code via a crafted Adobe Digital Negative (DNG) image.
network
apple CWE-119
6.8
2008-02-19 CVE-2008-0830 Improper Input Validation vulnerability in Apple Iphoto 4.0.3
The Digital Photo Access Protocol (DPAP) server for iPhoto 4.0.3 allows remote attackers to cause a denial of service (crash) via a malformed dpap: URI, a different vulnerability than CVE-2008-0043.
network
low complexity
apple CWE-20
7.5
2008-02-08 CVE-2008-0043 Code Injection vulnerability in Apple Iphoto
Format string vulnerability in Apple iPhoto before 7.1.2 allows remote attackers to execute arbitrary code via photocast subscriptions.
network
apple CWE-94
critical
9.3
2007-02-01 CVE-2007-0645 Products Format String vulnerability in Apple Iphoto 6.0.5
Format string vulnerability in iPhoto 6.0.5 allows remote user-assisted attackers to cause a denial of service (crash) via format string specifiers in a filename, which is not properly handled when calling certain Apple AppKit functions.
network
apple
6.8