Vulnerability index

Browse CVEs

1,484 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Quicktime HIGH 9.3
CVE-2008-3635EPSS 6%

Stack-based buffer overflow in QuickTimeInternetExtras.qtx in an unspecified third-party Indeo v3.2 (aka IV32) codec for QuickTime, when used with Ap…

Fix: after 7.5
Fix from $1,950 2008-09-11
Carboncore HIGH 9.3
CVE-2008-2320

Stack-based buffer overflow in CarbonCore in Apple Mac OS X 10.4.11 and 10.5.4, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through…

Patch available
Fix from $1,950 2008-08-04
Core Image Fun House MEDIUM 6.8
CVE-2008-2304EPSS 6%

Buffer overflow in Apple Core Image Fun House 2.0 and earlier in CoreImage Examples in Xcode tools before 3.1 allows user-assisted attackers to execu…

Fix: after 2.0
Fix from $1,600 2008-07-14
Mac Os X HIGH 9.3
CVE-2008-1031EPSS 6%

CoreGraphics in Apple Mac OS X before 10.5.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a…

Mitigation only
Fix from $1,950 2008-06-02
Mac Os X HIGH 9.3
CVE-2008-1574EPSS 7%

Integer overflow in ImageIO in Apple Mac OS X before 10.5.3 allows remote attackers to execute arbitrary code or cause a denial of service (applicati…

Patch available
Fix from $1,950 2008-06-02
Mac Os X HIGH 7.1
CVE-2008-1573

The BMP and GIF image decoding engine in ImageIO in Apple Mac OS X before 10.5.3 allows remote attackers to obtain sensitive information (memory cont…

Fix: after 10.5.2
Fix from $1,950 2008-06-02
Safari MEDIUM 6.8
CVE-2008-1026

Integer overflow in the PCRE regular expression compiler (JavaScriptCore/pcre/pcre_compile.cpp) in Apple WebKit, as used in Safari before 3.1.1, allo…

Patch available
Fix from $1,600 2008-04-17
Safari MEDIUM 6.8
CVE-2008-1010

Buffer overflow in WebKit, as used in Apple Safari before 3.1, allows remote attackers to execute arbitrary code via crafted regular expressions in J…

Patch available
Fix from $1,600 2008-03-19
Cups HIGH 10.0
CVE-2008-0053EPSS 8%

Multiple buffer overflows in the HP-GL/2-to-PostScript filter in CUPS before 1.3.6 might allow remote attackers to execute arbitrary code via a craft…

Fix: after 1.3.5
Fix from $1,950 2008-03-18
Mac Os X MEDIUM 6.8
CVE-2008-0056

Stack-based buffer overflow in Foundation in Apple Mac OS X 10.4.11 allows context-dependent attackers to execute arbitrary code via a "long pathname…

Patch available
Fix from $1,600 2008-03-18
Aperture MEDIUM 6.8
CVE-2008-0987

Stack-based buffer overflow in Image Raw in Apple Mac OS X 10.5.2, and Digital Camera RAW Compatibility before Update 2.0 for Aperture 2 and iPhoto 7…

Patch available
Fix from $1,600 2008-03-18
Mac Os X MEDIUM 5.8
CVE-2008-0992

Array index error in pax in Apple Mac OS X 10.5.2 allows context-dependent attackers to execute arbitrary code via an archive with a crafted length v…

Patch available
Fix from $1,600 2008-03-18
Mac Os X MEDIUM 6.8
CVE-2008-0048

Stack-based buffer overflow in AppKit in Apple Mac OS X 10.4.11 allows context-dependent attackers to execute arbitrary code via the a long file name…

Patch available
Fix from $1,600 2008-03-18
Mac Os X MEDIUM 6.8
CVE-2008-0997

Stack-based buffer overflow in AppKit in Apple Mac OS X 10.4.11 allows user-assisted remote attackers to cause a denial of service (application termi…

Patch available
Fix from $1,600 2008-03-18
Mac Os X MEDIUM 5.8
CVE-2008-0044

Multiple buffer overflows in AFP Client in Apple Mac OS X 10.4.11 and 10.5.2 allow remote attackers to cause a denial of service (application termina…

Patch available
Fix from $1,600 2008-03-18
Mac Os X HIGH 8.8
CVE-2007-5850

Heap-based buffer overflow in Desktop Services in Apple Mac OS X 10.4.11 allows user-assisted attackers to execute arbitrary code via a directory wit…

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X HIGH 7.2
CVE-2007-5848

Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.

Mitigation only
Fix from $1,950 2007-12-19
Mac Os X MEDIUM 6.6
CVE-2007-3876

Stack-based buffer overflow in SMB in Apple Mac OS X 10.4.11 allows local users to execute arbitrary code via (1) a long workgroup (-W) option to mou…

No fix yet
Fix from $1,600 2007-12-19
Safari HIGH 9.3
CVE-2007-6166EPSS 42%

Stack-based buffer overflow in Apple QuickTime before 7.3.1, as used in QuickTime Player on Windows XP and Safari on Mac OS X, allows remote Real Tim…

Fix: after 7.3
Fix from $1,950 2007-11-29
Mac Os X HIGH 7.2
CVE-2007-4267

Stack-based buffer overflow in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a cra…

Mitigation only
Fix from $1,950 2007-11-15
Mac Os X MEDIUM 6.9
CVE-2007-4681

Buffer overflow in CoreFoundation in Apple Mac OS X 10.3.9 and 10.4 through 10.4.10 allows local users to cause a denial of service (application cras…

Mitigation only
Fix from $1,600 2007-11-15
Mac Os X MEDIUM 6.9
CVE-2007-4684

Integer overflow in the kernel in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a large num_sels argument to t…

Mitigation only
Fix from $1,600 2007-11-15
Mac Os X HIGH 9.3
CVE-2007-4675EPSS 33%

Heap-based buffer overflow in the QuickTime VR extension 7.2.0.240 in QuickTime.qts in Apple QuickTime before 7.3 allows remote attackers to execute …

Patch available
Fix from $1,950 2007-11-07
Mac Os X HIGH 9.3
CVE-2007-4676EPSS 47%

Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via malformed elements when parsing (1) Po…

Mitigation only
Fix from $1,950 2007-11-07
Mac Os X HIGH 9.3
CVE-2007-4677EPSS 47%

Heap-based buffer overflow in Apple QuickTime before 7.3 allows remote attackers to execute arbitrary code via an invalid color table size when parsi…

Mitigation only
Fix from $1,950 2007-11-07
Safari HIGH 9.3
CVE-2007-5450

Unspecified vulnerability in Safari on the Apple iPod touch (aka iTouch) and iPhone 1.1.1 allows user-assisted remote attackers to cause a denial of …

No fix yet
Fix from $1,950 2007-10-14
Safari MEDIUM 5.0
CVE-2007-4812

Buffer overflow in Apple Safari 3.0.3 522.15.5, and other versions before Beta Update 3.0.4, allows remote attackers to cause a denial of service (cr…

Mitigation only
Fix from $1,600 2007-09-11
Itunes HIGH 9.3
CVE-2007-3752EPSS 6%

Heap-based buffer overflow in Apple iTunes before 7.4 allows remote attackers to cause a denial of service (application crash) or execute arbitrary c…

Fix: after 7.3.2
Fix from $1,950 2007-09-06
Safari MEDIUM 6.8
CVE-2007-3743

Stack-based buffer overflow in bookmark handling in Apple Safari 3 Beta before Update 3.0.3 on Windows allows user-assisted remote attackers to cause…

Fix: after 3.0.2
Fix from $1,600 2007-08-03
Mac Os X MEDIUM 5.8
CVE-2007-3744EPSS 7%

Heap-based buffer overflow in the UPnP IGD (Internet Gateway Device Standardized Device Control Protocol) implementation in mDNSResponder on Apple Ma…

Patch available
Fix from $1,600 2007-08-03