Vulnerabilities > Apple > MAC OS X

DATE CVE VULNERABILITY TITLE RISK
2007-11-15 CVE-2007-4681 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X
Buffer overflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows local users to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted directory hierarchy.
local
apple CWE-119
6.9
2007-11-15 CVE-2007-4680 Improper Authentication vulnerability in Apple mac OS X
CFNetwork in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 does not properly validate certificates, which allows remote attackers to spoof trusted SSL certificates via a man-in-the-middle attack.
network
apple CWE-287
6.8
2007-11-15 CVE-2007-4679 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X
CFFTP in CFNetwork for Apple Mac OS X 10.4 through 10.4.10 allows remote FTP servers to force clients to connect to other hosts via crafted responses to FTP PASV commands.
network
high complexity
apple CWE-264
2.6
2007-11-15 CVE-2007-4678 Multiple Security vulnerability in Apple Mac OS X v10.4.11 2007-008
AppleRAID in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows attackers to cause a denial of service (crash) via a crafted striped disk image, which triggers a NULL pointer dereference when it is mounted.
network
apple
7.1
2007-11-15 CVE-2007-4269 Numeric Errors vulnerability in Apple mac OS X and mac OS X Server
Integer overflow in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk Session Protocol (ASP) message on an AppleTalk socket, which triggers a heap-based buffer overflow.
local
low complexity
apple CWE-189
7.2
2007-11-15 CVE-2007-4268 Incorrect Conversion between Numeric Types vulnerability in Apple mac OS X
Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk message with a negative value, which satisfies a signed comparison during mbuf allocation but is later interpreted as an unsigned value, which triggers a heap-based buffer overflow.
local
low complexity
apple CWE-681
7.8
2007-11-15 CVE-2007-4267 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X
Stack-based buffer overflow in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted IOCTL request that adds an AppleTalk zone to a routing table.
local
low complexity
apple CWE-119
7.2
2007-11-15 CVE-2007-3749 Improper Initialization vulnerability in Apple mac OS X
The kernel in Apple Mac OS X 10.4 through 10.4.10 does not reset the current Mach Thread Port or Thread Exception Port when executing a setuid program, which allows local users to execute arbitrary code by creating the port before launching the setuid program, then writing to the address space of the setuid process.
local
low complexity
apple CWE-665
7.8
2007-11-15 CVE-2007-4692 Improper Authentication vulnerability in Apple Safari
The tabbed browsing feature in Apple Safari 3 before Beta Update 3.0.4 on Windows, and Mac OS X 10.4 through 10.4.10, allows remote attackers to spoof HTTP authentication for other sites and possibly conduct phishing attacks by causing an authentication sheet to be displayed for a tab that is not active, which makes it appear as if it is associated with the active tab.
4.3
2007-11-07 CVE-2007-4677 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.
network
apple microsoft CWE-119
critical
9.3