Vulnerabilities > Apple > MAC OS X

DATE CVE VULNERABILITY TITLE RISK
2005-10-25 CVE-2005-2748 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The malloc function in the libSystem library in Apple Mac OS X 10.3.9 and 10.4.2 allows local users to overwrite arbitrary files by setting the MallocLogFile environment variable to the target file before running a setuid application.
local
low complexity
apple
2.1
2005-10-25 CVE-2005-2747 Multiple vulnerability in Apple Mac OS X Security Update 2005-008
Buffer overflow in ImageIO for Apple Mac OS X 10.4.2, as used by applications such as WebCore and Safari, allows remote attackers to execute arbitrary code via a crafted GIF file.
network
low complexity
apple
7.5
2005-10-25 CVE-2005-2744 Multiple vulnerability in Apple Mac OS X Security Update 2005-008
Buffer overflow in QuickDraw Manager for Apple OS X 10.3.9 and 10.4.2, as used by applications such as Safari, Mail, and Finder, allows remote attackers to execute arbitrary code via a crafted PICT file.
network
high complexity
apple
5.1
2005-08-19 CVE-2005-2526 CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.
network
low complexity
easy-software-products apple
5.0
2005-08-19 CVE-2005-2525 CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, which allows remote attackers to cause a denial of service (printing halt).
network
low complexity
easy-software-products apple
5.0
2005-08-19 CVE-2005-2523 Unspecified vulnerability in Apple mac OS X and Weblog Server
Multiple cross-site scripting (XSS) vulnerabilities in Weblog Server in Mac OS X 10.4 to 10.4.2 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
network
apple
4.3
2005-08-19 CVE-2005-2522 Unspecified vulnerability in Apple mac OS X and Safari
Safari in WebKit in Mac OS X 10.4 to 10.4.2 directly accesses URLs within PDF files without the normal security checks, which allows remote attackers to execute arbitrary code via links in a PDF file.
network
high complexity
apple
5.1
2005-08-19 CVE-2005-2521 Unspecified vulnerability in Apple mac OS X 10.3.9
Buffer overflow in traceroute in Mac OS X 10.3.9 allows local users to execute arbitrary code via unknown vectors.
local
low complexity
apple
4.6
2005-08-19 CVE-2005-2520 Unspecified vulnerability in Apple mac OS X 10.4/10.4.1/10.4.2
The password assistant in Mac OS X 10.4 to 10.4.2, when used to create multiple accounts from the same process, does not reset the suggested password list when the assistant is displayed, which allows attackers to view recently used passwords.
local
low complexity
apple
2.1
2005-08-19 CVE-2005-2519 Unspecified vulnerability in Apple mac OS X 10.3.9
slpd in Directory Services in Mac OS X 10.3.9 creates insecure temporary files as root, which allows local users to gain privileges.
local
low complexity
apple
7.2