Vulnerabilities > Apple > MAC OS X

DATE CVE VULNERABILITY TITLE RISK
2006-08-03 CVE-2006-3499 Multiple Security vulnerability in Apple Mac OS X
The dynamic linker (dyld) in Apple Mac OS X 10.3.9 allows local users to obtain sensitive information via unspecified dynamic linker options that affect the use of standard error (stderr) by privileged applications.
local
low complexity
apple
2.1
2006-08-03 CVE-2006-0393 Multiple Security vulnerability in Apple Mac OS X
OpenSSH in Apple Mac OS X 10.4.7 allows remote attackers to cause a denial of service or determine account existence by attempting to log in using an invalid user, which causes the server to hang.
network
high complexity
apple
4.0
2006-08-03 CVE-2006-0392 Multiple Security vulnerability in Apple Mac OS X
Buffer overflow in Apple Mac OS X 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Canon RAW image.
network
high complexity
apple
5.1
2006-08-02 CVE-2006-3498 Multiple Security vulnerability in Apple Mac OS X
Stack-based buffer overflow in bootpd in the DHCP component for Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to execute arbitrary code via a crafted BOOTP request.
network
low complexity
apple
critical
10.0
2006-08-02 CVE-2006-3497 Multiple Security vulnerability in Apple Mac OS X
Unspecified vulnerability in the "compression state handling" in Bom for Apple Mac OS X 10.3.9 and 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted Zip archive.
network
high complexity
apple
5.1
2006-08-02 CVE-2006-3496 Multiple Security vulnerability in Apple Mac OS X
AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause denial of service (crash) via an invalid AFP request that triggers an unchecked error condition.
network
low complexity
apple
5.0
2006-08-02 CVE-2006-3495 Multiple Security vulnerability in Apple Mac OS X
AFP Server in Apple Mac OS X 10.3.9 and 10.4.7 stores reconnect keys in a world-readable file, which allows local users to obtain the keys and access files and folders of other users.
local
low complexity
apple
2.1
2006-08-02 CVE-2006-1473 Multiple Security vulnerability in Apple Mac OS X
Integer overflow in AFP Server for Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via unknown vectors.
network
low complexity
apple
5.0
2006-08-02 CVE-2006-1472 Multiple Security vulnerability in Apple Mac OS X
Unspecified vulnerability in AFP Server in Apple Mac OS X 10.3.9 allows remote attackers to determine names of unauthorized files and folders via unknown vectors related to the search results.
network
low complexity
apple
5.0
2006-07-31 CVE-2006-3946 Buffer Errors vulnerability in Apple mac OS X and Safari
WebCore in Apple Mac OS X 10.3.9 and 10.4 through 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted HTML that triggers a "memory management error" in WebKit, possibly due to a buffer overflow, as originally reported for the KHTMLParser::popOneBlock function in Apple Safari 2.0.4 using Javascript that changes document.body.innerHTML within a DIV tag.
network
low complexity
apple CWE-119
7.5