Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2005-12-31 CVE-2005-3711 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified (1) "strips" (StripByteCounts) or (2) "bands" (StripOffsets) values.
network
low complexity
apple CWE-189
7.5
2005-12-31 CVE-2005-3710 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified image height and width (ImageWidth) tags.
network
low complexity
apple CWE-189
7.5
2005-12-31 CVE-2005-3709 Numeric Errors vulnerability in Apple Quicktime
Integer underflow in Apple Quicktime before 7.0.4 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the Color Map Entry Size in a TGA image file.
network
low complexity
apple CWE-189
7.5
2005-12-31 CVE-2005-3708 Code Execution vulnerability in RETIRED: Apple QuickTime
Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.
network
low complexity
apple
7.5
2005-12-31 CVE-2005-3707 Code Execution vulnerability in RETIRED: Apple QuickTime
Buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via crafted TGA image files.
network
low complexity
apple
7.5
2005-12-31 CVE-2005-3706 Multiple vulnerability in Apple Mac OS X Security Update 2006-001
Heap-based buffer overflow in LibSystem in Mac OS X 10.4 through 10.4.5 allows context-dependent attackers to execute arbitrary code by causing an application that uses LibSystem to request a large amount of memory.
network
low complexity
apple
6.4
2005-12-31 CVE-2005-2714 Link Following vulnerability in Apple mac OS X and mac OS X Server
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to overwrite arbitrary files via a symlink attack on the .pwtmp.[PID] temporary file.
local
low complexity
apple CWE-59
6.8
2005-12-31 CVE-2005-2713 Multiple vulnerability in Apple Mac OS X Security Update 2006-001
passwd in Directory Services in Mac OS X 10.3.x before 10.3.9 and 10.4.x before 10.4.5 allows local users to create arbitrary world-writable files as root by specifying an alternate file in the password database option.
local
low complexity
apple
6.8
2005-12-31 CVE-2005-2340 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a crafted (1) QuickTime Image File (QTIF), (2) PICT, or (3) JPEG format image with a long data field.
network
low complexity
apple CWE-119
7.5
2005-12-31 CVE-2005-2194 TCP/IP Remote Denial Of Service vulnerability in Apple Mac OSX
Unspecified vulnerability in the Apple Mac OS X kernel before 10.4.2 allows remote attackers to cause a denial of service (kernel panic) via a crafted TCP packet, possibly related to source routing or loose source routing.
network
low complexity
apple
5.0