Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2005-11-05 CVE-2005-2755 Denial of Service vulnerability in Apple QuickTime Null Pointer Dereference
Apple QuickTime Player before 7.0.3 allows user-assisted attackers to cause a denial of service (crash) via a crafted file with a missing movie attribute, which leads to a null dereference.
network
high complexity
apple
2.6
2005-11-05 CVE-2005-2754 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file with "Improper movie attributes."
network
high complexity
apple CWE-189
5.1
2005-11-05 CVE-2005-2753 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple QuickTime before 7.0.3 allows user-assisted attackers to execute arbitrary code via a crafted MOV file that causes a sign extension of the length element in a Pascal style string.
network
high complexity
apple CWE-189
5.1
2005-11-01 CVE-2005-2752 Information Exposure vulnerability in Apple mac OS X and mac OS X Server
An unspecified kernel interface in Mac OS X 10.4.2 and earlier does not properly clear memory before reusing it, which could allow attackers to obtain sensitive information, a different vulnerability than CVE-2005-1126 and CVE-2005-1406.
local
low complexity
apple CWE-200
2.1
2005-11-01 CVE-2005-2751 Local vulnerability in Apple Mac OS X Security Update 2005-10-31
memberd in Mac OS X 10.4 up to 10.4.2, in certain situations, does not quickly synchronize access control checks with changes in group membership, which could allow users to access files and other resources after they have been removed from a group.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2750 Local vulnerability in Apple mac OS X Server 10.4.2
Software Update in Mac OS X 10.4.2, when the user marks all updates to be ignored, exits without asking the user to reset the status of the updates, which could prevent important, security-relevant updates from being installed.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2749 Local vulnerability in Apple Mac OS X Security Update 2005-10-31
Unspecified vulnerability in the Finder Get Info window for Mac OS X 10.4 up to 10.4.2 causes Finder to misrepresent file and group ownership information.
local
low complexity
apple
2.1
2005-11-01 CVE-2005-2739 Local vulnerability in Apple Mac OS X Security Update 2005-10-31
Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times out while the password is being viewed, which could allow attackers with physical access to obtain the password.
local
low complexity
apple
2.1
2005-10-26 CVE-2005-2746 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Mail.app in Mail for Apple Mac OS X 10.3.9 and 10.4.2 includes message contents when using auto-reply rules, which could cause Mail.app to include decrypted message contents for encrypted messages.
network
low complexity
apple
5.0
2005-10-26 CVE-2005-2745 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Mail.app in Mail for Apple Mac OS X 10.3.9, when using Kerberos 5 for SMTP authentication, can include uninitialized memory in a message, which might allow remote attackers to obtain sensitive information.
network
low complexity
apple
5.0