Vulnerabilities > Apple > MAC OS X > Critical

DATE CVE VULNERABILITY TITLE RISK
2007-11-15 CVE-2007-4703 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The Application Firewall in Apple Mac OS X 10.5 does not prevent a root process from accepting incoming connections, even when "Block incoming connections" has been set for its associated executable, which might allow remote attackers or local root processes to bypass intended access restrictions.
network
low complexity
apple
critical
10.0
2007-11-15 CVE-2007-4702 Unspecified vulnerability in Apple mac OS X and mac OS X Server
The Application Firewall in Apple Mac OS X 10.5, when "Block all incoming connections" is enabled, does not prevent root processes or mDNSResponder from accepting connections, which might allow remote attackers or local root processes to bypass intended access restrictions.
network
apple
critical
9.3
2007-11-15 CVE-2007-4691 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X and mac OS X Server
The NSURL component in Apple Mac OS X 10.4 through 10.4.10 performs case-sensitive comparisons that allow attackers to bypass intended restrictions for local file system URLs.
network
low complexity
apple CWE-264
critical
10.0
2007-11-15 CVE-2007-4690 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
Double free vulnerability in the NFS component in Apple Mac OS X 10.4 through 10.4.10 allows remote authenticated users to execute arbitrary code via a crafted AUTH_UNIX RPC packet.
network
low complexity
apple CWE-399
critical
9.0
2007-11-15 CVE-2007-4689 Resource Management Errors vulnerability in Apple mac OS X and mac OS X Server
Double free vulnerability in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows remote attackers to cause a denial of service (system shutdown) or execute arbitrary code via crafted IPV6 packets.
network
low complexity
apple CWE-399
critical
10.0
2007-11-15 CVE-2007-4687 Configuration vulnerability in Apple mac OS X and mac OS X Server
The remote_cmds component in Apple Mac OS X 10.4 through 10.4.10 contains a symbolic link from the tftpboot private directory to the root directory, which allows tftpd users to escape the private directory and access arbitrary files.
network
apple CWE-16
critical
9.3
2007-11-07 CVE-2007-4677 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsing the color table atom (CTAB) in a movie file, related to the CTAB RGB values.
network
apple microsoft CWE-119
critical
9.3
2007-11-07 CVE-2007-4676 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Poly type (0x0070 through 0x0074) and (2) PackBitsRgn field (0x0099) opcodes in a PICT image.
network
apple microsoft CWE-119
critical
9.3
2007-11-07 CVE-2007-4675 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in the QuickTime VR extension 7.2.0.240 in QuickTime.qts in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via a QTVR (QuickTime Virtual Reality) movie file containing a large size field in the atom header of a panorama sample atom.
network
apple microsoft CWE-119
critical
9.3
2007-11-07 CVE-2007-3751 Remote Privilege Escalation vulnerability in Apple QuickTime for Java
Unspecified vulnerability in QuickTime for Java in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via untrusted Java applets that gain privileges via unspecified vectors.
network
apple microsoft
critical
9.3