Vulnerabilities > Apple

DATE CVE VULNERABILITY TITLE RISK
2005-05-12 CVE-2005-0973 Unspecified vulnerability in Apple mac OS X
Unknown vulnerability in the setsockopt system call in Mac OS X 10.3.9 and earlier allows local users to cause a denial of service (memory exhaustion) via crafted arguments.
local
low complexity
apple
2.1
2005-05-12 CVE-2005-0972 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Integer overflow in the searchfs system call in Mac OS X 10.3.9 and earlier allows local users to execute arbitrary code via crafted parameters.
local
low complexity
apple
7.2
2005-05-12 CVE-2005-0971 Unspecified vulnerability in Apple mac OS X
Stack-based buffer overflow in the semop system call in Mac OS X 10.3.9 and earlier allows local users to gain privileges via crafted arguments.
local
low complexity
apple
4.6
2005-05-12 CVE-2005-0969 Unspecified vulnerability in Apple mac OS X
Heap-based buffer overflow in the syscall emulation functionality in Mac OS X before 10.3.9 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code via crafted parameters.
local
low complexity
apple
4.6
2005-05-11 CVE-2005-1505 The new account wizard in Mail.app 2.0 in Mac OS 10.4, when configuring an IMAP mail account and checking the credentials, does not prompt the user to use SSL until after the password has already been sent, which causes the password to be sent in plaintext.
network
low complexity
apple
7.5
2005-05-04 CVE-2005-1342 Multiple vulnerability in Apple Mac OS X
The x-man-page: URI handler for Apple Terminal 1.4.4 in Mac OS X 10.3.9 does not cleanse terminal escape sequences, which allows remote attackers to execute arbitrary commands.
network
low complexity
apple
7.5
2005-05-04 CVE-2005-1341 Multiple vulnerability in Apple Mac OS X
Apple Terminal 1.4.4 allows attackers to execute arbitrary commands via terminal escape sequences.
network
high complexity
apple
5.1
2005-05-04 CVE-2005-1340 Remote Security vulnerability in Apple mac OS X 10.3.9
The HTTP proxy service in Server Admin for Mac OS X 10.3.9 does not restrict access when it is enabled, which allows remote attackers to use the proxy.
network
low complexity
apple
7.5
2005-05-04 CVE-2005-1339 Remote Security vulnerability in Mac OS X Server
lukemftpd in Mac OS X 10.3.9 allows remote authenticated users to escape the chroot environment by logging in with their full name.
network
low complexity
apple
7.5
2005-05-04 CVE-2005-1338 Local Security vulnerability in Apple mac OS X 10.3.9
Mac OS X 10.3.9, when using an LDAP server that does not use ldap_extended_operation, may store initial LDAP passwords for new accounts in plaintext.
local
low complexity
apple
4.6