Vulnerabilities > Apple > MAC OS X Server > 10.4.8

DATE CVE VULNERABILITY TITLE RISK
2007-11-15 CVE-2007-4687 Configuration vulnerability in Apple mac OS X and mac OS X Server
The remote_cmds component in Apple Mac OS X 10.4 through 10.4.10 contains a symbolic link from the tftpboot private directory to the root directory, which allows tftpd users to escape the private directory and access arbitrary files.
network
apple CWE-16
critical
9.3
2007-11-15 CVE-2007-4686 Numeric Errors vulnerability in Apple mac OS X and mac OS X Server
Integer signedness error in the ttioctl function in bsd/kern/tty.c in the xnu kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to cause a denial of service (system shutdown) or gain privileges via a crafted TIOCSETD ioctl request.
local
low complexity
apple CWE-189
7.2
2007-11-15 CVE-2007-4685 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X and mac OS X Server
The kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to gain privileges by executing setuid or setgid programs in which the stdio, stderr, or stdout file descriptors are "in an unexpected state."
local
low complexity
apple CWE-264
7.2
2007-11-15 CVE-2007-4680 Improper Authentication vulnerability in Apple mac OS X
CFNetwork in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 does not properly validate certificates, which allows remote attackers to spoof trusted SSL certificates via a man-in-the-middle attack.
network
apple CWE-287
6.8
2007-11-15 CVE-2007-4678 Multiple Security vulnerability in Apple Mac OS X v10.4.11 2007-008
AppleRAID in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows attackers to cause a denial of service (crash) via a crafted striped disk image, which triggers a NULL pointer dereference when it is mounted.
network
apple
7.1
2007-11-15 CVE-2007-4269 Numeric Errors vulnerability in Apple mac OS X and mac OS X Server
Integer overflow in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk Session Protocol (ASP) message on an AppleTalk socket, which triggers a heap-based buffer overflow.
local
low complexity
apple CWE-189
7.2
2007-11-15 CVE-2007-4692 Improper Authentication vulnerability in Apple Safari
The tabbed browsing feature in Apple Safari 3 before Beta Update 3.0.4 on Windows, and Mac OS X 10.4 through 10.4.10, allows remote attackers to spoof HTTP authentication for other sites and possibly conduct phishing attacks by causing an authentication sheet to be displayed for a tab that is not active, which makes it appear as if it is associated with the active tab.
4.3
2007-08-03 CVE-2007-3748 Multiple Security vulnerability in Apple Mac OS X 2007-007
Buffer overflow in the UPnP IGD (Internet Gateway Device Standardized Device Control Protocol) implementation in iChat on Apple Mac OS X 10.3.9 and 10.4.10 allows network-adjacent remote attackers to execute arbitrary code via a crafted packet.
5.4
2007-08-03 CVE-2007-3747 Multiple Security vulnerability in Apple Mac OS X 2007-007
The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 does not restrict object instantiation and manipulation to valid heap addresses, which allows remote attackers to execute arbitrary code via a crafted applet.
network
apple
6.8
2007-08-03 CVE-2007-3746 Multiple Security vulnerability in Apple Mac OS X 2007-007
The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 does not properly check the bounds of heap read and write operations, which allows remote attackers to execute arbitrary code via a crafted applet.
network
apple
6.8