Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Mac_os_x_server
(Apple)Repositories | https://github.com/apache/httpd |
#Vulnerabilities | 664 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2009-11-10 | CVE-2009-2808 | Help Viewer in Apple Mac OS X before 10.6.2 does not use an HTTPS connection to retrieve Apple Help content from a web site, which allows man-in-the-middle attackers to send a crafted help:runscript link, and thereby execute arbitrary code, via a spoofed response. | Mac_os_x, Mac_os_x_server | N/A | ||
2009-09-14 | CVE-2009-2807 | Heap-based buffer overflow in the USB backend in CUPS in Apple Mac OS X 10.5.8 allows local users to gain privileges via unspecified vectors. | Mac_os_x, Mac_os_x_server | N/A | ||
2009-09-14 | CVE-2009-2805 | Integer overflow in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JBIG2 stream in a PDF file, leading to a heap-based buffer overflow. | Mac_os_x, Mac_os_x_server | N/A | ||
2009-09-14 | CVE-2009-2804 | Integer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5.8, and Safari before 4.0.4 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ColorSync profile embedded in an image, leading to a heap-based buffer overflow. | Mac_os_x, Mac_os_x_server, Safari | N/A | ||
2009-09-14 | CVE-2009-2803 | CarbonCore in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a file with a crafted resource fork. | Mac_os_x, Mac_os_x_server | N/A | ||
2010-03-30 | CVE-2009-2801 | The Application Firewall in Apple Mac OS X 10.5.8 drops unspecified firewall rules after a reboot, which might allow remote attackers to bypass intended access restrictions via packet data, related to a "timing issue." | Mac_os_x, Mac_os_x_server | N/A | ||
2009-09-11 | CVE-2009-2800 | Buffer overflow in Alias Manager in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted alias file. | Mac_os_x, Mac_os_x_server | N/A | ||
2009-09-09 | CVE-2009-2205 | Stack-based buffer overflow in the Java Web Start command launcher in Java for Mac OS X 10.5 before Update 5 allows attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors. | Java_1\.4, Java_1\.5, Java_1\.6, Mac_os_x, Mac_os_x_server | N/A | ||
2009-08-12 | CVE-2009-2196 | Unspecified vulnerability in Apple Safari 4 before 4.0.3 allows remote web servers to place an arbitrary web site in the Top Sites view, and possibly conduct phishing attacks, via unknown vectors. | Mac_os_x, Mac_os_x_server, Safari, Windows_vista, Windows_xp | N/A | ||
2009-08-06 | CVE-2009-2194 | Apple Mac OS X 10.5 before 10.5.8 does not properly share file descriptors over local sockets, which allows local users to cause a denial of service (system crash) by placing file descriptors in messages sent to a socket that has no receiver, related to a "synchronization issue." | Mac_os_x, Mac_os_x_server | N/A |