Vulnerabilities > Apple > Medium

DATE CVE VULNERABILITY TITLE RISK
2008-09-11 CVE-2008-3624 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Quicktime
Heap-based buffer overflow in Apple QuickTime before 7.5.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a QuickTime Virtual Reality (QTVR) movie file with crafted panorama atoms.
6.8
2008-09-11 CVE-2008-3614 Numeric Errors vulnerability in Apple Quicktime
Integer overflow in Apple QuickTime before 7.5.5 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PICT image, which triggers heap corruption.
6.8
2008-09-11 CVE-2008-2326 Improper Input Validation vulnerability in Apple Bonjour 1.0.4
mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows attackers to cause a denial of service (NULL pointer dereference and application crash) by resolving a crafted .local domain name that contains a long label.
network
low complexity
apple microsoft CWE-20
5.0
2008-09-03 CVE-2008-1739 Resource Management Errors vulnerability in Apple Quicktime
Apple QuickTime before 7.4.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted ftyp atoms in a movie file, which triggers memory corruption.
network
apple CWE-399
6.8
2008-08-27 CVE-2008-3281 XML Entity Expansion vulnerability in multiple products
libxml2 2.6.32 and earlier does not properly detect recursion during entity expansion in an attribute value, which allows context-dependent attackers to cause a denial of service (memory and CPU consumption) via a crafted XML document.
6.5
2008-08-04 CVE-2008-2324 Permissions, Privileges, and Access Controls vulnerability in Apple mac OS X and mac OS X Server
The Repair Permissions tool in Disk Utility in Apple Mac OS X 10.4.11 adds the setuid bit to the emacs executable file, which allows local users to gain privileges by executing commands within emacs.
local
low complexity
apple CWE-264
4.6
2008-07-14 CVE-2008-3171 Information Exposure vulnerability in Apple Safari
Apple Safari sends Referer headers containing https URLs to different https web sites, which allows remote attackers to obtain potentially sensitive information by reading Referer log data.
network
low complexity
apple CWE-200
5.0
2008-07-14 CVE-2008-3170 Permissions, Privileges, and Access Controls vulnerability in Apple Safari
Apple Safari allows web sites to set cookies for country-specific top-level domains, such as co.uk and com.au, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session, aka "Cross-Site Cooking," a related issue to CVE-2004-0746, CVE-2004-0866, and CVE-2004-0867.
network
apple CWE-264
6.8
2008-07-14 CVE-2008-2318 Information Exposure vulnerability in Apple Xcode and Xcode Tools
The WOHyperlink implementation in WebObjects in Apple Xcode tools before 3.1 appends local session IDs to generated non-local URLs, which allows remote attackers to obtain potentially sensitive information by reading the requests for these URLs.
network
low complexity
apple CWE-200
5.0
2008-07-14 CVE-2008-2304 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Apple Core Image FUN House
Buffer overflow in Apple Core Image Fun House 2.0 and earlier in CoreImage Examples in Xcode tools before 3.1 allows user-assisted attackers to execute arbitrary code or cause a denial of service (application crash) via a .funhouse file with a string XML element that contains many characters.
network
apple CWE-119
6.8