Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2010-03-30 CVE-2010-0513 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X and mac OS X Server
Stack-based buffer overflow in PS Normalizer in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PostScript document.
network
apple CWE-119
6.8
2010-03-30 CVE-2010-0511 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X Server 10.6.0/10.6.1/10.6.2
Podcast Producer in Apple Mac OS X 10.6 before 10.6.3 deletes the access restrictions of a Podcast Composer workflow when this workflow is overwritten, which allows attackers to access a workflow via unspecified vectors.
network
low complexity
apple CWE-264
5.0
2010-03-30 CVE-2010-0507 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X and mac OS X Server
Buffer overflow in Image RAW in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PEF image.
network
apple CWE-119
6.8
2010-03-30 CVE-2010-0506 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X and mac OS X Server
Buffer overflow in Image RAW in Apple Mac OS X 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted NEF image.
network
apple CWE-119
6.8
2010-03-30 CVE-2010-0505 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X and mac OS X Server
Heap-based buffer overflow in ImageIO in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 (JPEG2000) image, related to incorrect calculation and the CGImageReadGetBytesAtOffset function.
network
apple CWE-119
6.8
2010-03-30 CVE-2010-0503 Resource Management Errors vulnerability in Apple mac OS X Server
Use-after-free vulnerability in iChat Server in Apple Mac OS X Server 10.5.8 allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.
network
low complexity
apple CWE-399
6.5
2010-03-30 CVE-2010-0502 Unspecified vulnerability in Apple mac OS X Server
iChat Server in Apple Mac OS X Server before 10.6.3, when group chat is used, does not perform logging for all types of messages, which might allow remote attackers to avoid message auditing via an unspecified selection of message type.
network
apple
4.3
2010-03-30 CVE-2010-0501 Path Traversal vulnerability in Apple mac OS X Server
Directory traversal vulnerability in FTP Server in Apple Mac OS X Server before 10.6.3 allows remote authenticated users to read arbitrary files via crafted filenames.
network
low complexity
apple CWE-22
6.8
2010-03-30 CVE-2010-0497 Unspecified vulnerability in Apple mac OS X and mac OS X Server
Disk Images in Apple Mac OS X before 10.6.3 does not provide the expected warning for an unsafe file type in an internet enabled disk image, which makes it easier for user-assisted remote attackers to execute arbitrary code via a package file type.
network
apple
6.8
2010-03-30 CVE-2010-0065 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple mac OS X and mac OS X Server
Disk Images in Apple Mac OS X before 10.6.3 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted disk image with bzip2 compression.
network
apple CWE-119
6.8