Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Darwin_streaming_server
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 27 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2004-12-03 | CVE-2004-1083 | Apache for Apple Mac OS X 10.2.8 and 10.3.6 restricts access to files in a case sensitive manner, but the Apple HFS+ filesystem accesses files in a case insensitive manner, which allows remote attackers to read .DS_Store files and files beginning with ".ht" using alternate capitalization. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | 7.5 | ||
2007-05-13 | CVE-2007-0749 | Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allow remote attackers to execute arbitrary code via a long (1) cmd or (2) server value in an RTSP request. | Darwin_streaming_server | N/A | ||
2007-05-13 | CVE-2007-0748 | Heap-based buffer overflow in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allows remote attackers to execute arbitrary code via multiple trackID values in a SETUP RTSP request. | Darwin_streaming_server | N/A | ||
2005-07-18 | CVE-2005-2195 | Apple Darwin Streaming Server 5.5 and earlier allows remote attackers to cause a denial of service (application crash) via a URL with a filename containing a .cgi extension and an MS-DOS device name such as AUX, CON, PRN, COM1, or LPT1, a different vulnerability than CVE-2003-0421 and CVE-2003-0502. | Darwin_streaming_server | N/A | ||
2005-01-10 | CVE-2004-1123 | Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | N/A | ||
2004-12-02 | CVE-2004-1089 | Unknown vulnerability in Apple Mac OS X 10.3.6 server, when using Kerberos authentication and Cyrus IMAP allows local users to access mailboxes of other users. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | N/A | ||
2004-12-02 | CVE-2004-1088 | Postfix server for Apple Mac OS X 10.3.6, when using CRAM-MD5, allows remote attackers to send mail without authentication by replaying authentication information. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | N/A | ||
2004-12-02 | CVE-2004-1087 | Terminal for Apple Mac OS X 10.3.6 may indicate that "Secure Keyboard Entry" is enabled even when it is not, which could result in a false sense of security for the user. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | N/A | ||
2004-12-02 | CVE-2004-1086 | Buffer overflow in PSNormalizer for Apple Mac OS X 10.3.6 allows remote attackers to execute arbitrary code via a crafted PostScript input file. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | N/A | ||
2004-12-02 | CVE-2004-1085 | Human Interface Toolbox (HIToolBox) for Apple Mac 0S X 10.3.6 allows local users to exit applications via the force-quit key combination, even when the system is running in kiosk mode. | Darwin_streaming_server, Mac_os_x, Mac_os_x_server, Quicktime_streaming_server | N/A |