Vulnerability index

Browse CVEs

365 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Ichat HIGH 7.5
CVE-2007-0021EPSS 23%

Format string vulnerability in Apple iChat 3.1.6 allows remote attackers to cause a denial of service (null pointer dereference and application crash…

No fix yet
Fix from $1,950 2007-01-23
Mac Os X HIGH 7.2
CVE-2007-0022

Untrusted search path vulnerability in writeconfig in Apple Mac OS X 10.4.8 allows local users to gain privileges via a modified PATH that points to …

No fix yet
Fix from $1,950 2007-01-23
Minimal Slp Service Agent HIGH 7.2
CVE-2007-0355EPSS 7%

Buffer overflow in the Apple Minimal SLP v2 Service Agent (slpd) in Mac OS X 10.4.11 and earlier, including 10.4.8, allows local users, and possibly …

No fix yet
Fix from $1,950 2007-01-19
Safari HIGH 7.5
CVE-2007-0342

WebCore in Apple WebKit build 18794 allows remote attackers to cause a denial of service (null dereference and application crash) via a TD element wi…

No fix yet
Fix from $1,950 2007-01-18
Mac Os X MEDIUM 6.8
CVE-2007-0345

The (1) Activity Monitor.app/Contents/Resources/pmTool, (2) Keychain Access.app/Contents/Resources/kcproxy, and (3) ODBC Administrator.app/Contents/R…

No fix yet
Fix from $1,600 2007-01-18
Mac Os X HIGH 7.8
CVE-2007-0318

The do_hfs_truncate function in Mac OS X 10.4.8 allows context-dependent attackers to cause a denial of service (kernel panic) via a crafted HFS+ fil…

Mitigation only
Fix from $1,950 2007-01-18
Mac Os X HIGH 7.1
CVE-2007-0299

Integer overflow in the byte_swap_sbin function in bsd/ufs/ufs/ufs_byte_order.c in Mac OS X 10.4.8 allows user-assisted remote attackers to cause a d…

Mitigation only
Fix from $1,950 2007-01-17
Mac Os X HIGH 10.0
CVE-2007-0236EPSS 21%

Double free vulnerability in the _ATPsndrsp function in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to cause a denial…

No fix yet
Fix from $1,950 2007-01-16
Mac Os X MEDIUM 6.8
CVE-2007-0197EPSS 8%

Finder 10.4.6 on Apple Mac OS X 10.4.8 allows user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via a l…

No fix yet
Fix from $1,600 2007-01-11
Mac Os X HIGH 10.0
CVE-2007-0117EPSS 5%

DiskManagementTool in the DiskManagement.framework 92.29 on Mac OS X 10.4.8 does not properly validate Bill of Materials (BOM) files, which allows at…

No fix yet
Fix from $1,950 2007-01-09
Iphoto MEDIUM 6.8
CVE-2007-0051EPSS 9%

Format string vulnerability in Apple iPhoto 6.0.5 (316), and other versions before 6.0.6, allows remote user-assisted attackers to execute arbitrary …

No fix yet
Fix from $1,600 2007-01-04
Mac Os X HIGH 10.0
CVE-2006-6900

Unspecified vulnerability in the Bluetooth stack in Apple Mac OS 10.4 has unknown impact and attack vectors, related to an "implementation bug."

No fix yet
Fix from $1,950 2006-12-31
Bomarchivehelper MEDIUM 5.0
CVE-2006-6353

Multiple unspecified vulnerabilities in BOMArchiveHelper in Mac OS X allow user-assisted remote attackers to cause a denial of service (application c…

No fix yet
Fix from $1,600 2006-12-07
Safari MEDIUM 5.0
CVE-2006-6238

The AutoFill feature in Apple Safari 2.0.4 does not properly verify that all automatically populated form fields are visible to the user, which allow…

No fix yet
Fix from $1,600 2006-12-03
Mac Os X HIGH 7.5
CVE-2006-4406EPSS 7%

Buffer overflow in PPP on Apple Mac OS X 10.4.x up to 10.4.8 and 10.3.x up to 10.3.9, when PPPoE is enabled, allows remote attackers to execute arbit…

Mitigation only
Fix from $1,950 2006-11-30
Mac Os X HIGH 7.5
CVE-2006-4410

The Security Framework in Apple Mac OS X 10.3.9, and 10.4.x before 10.4.7, does not properly search certificate revocation lists (CRL), which allows …

Mitigation only
Fix from $1,950 2006-11-30
Mac Os X HIGH 7.2
CVE-2006-4398

Multiple buffer overflows in the Apple Type Services (ATS) server in Mac OS X 10.4 through 10.4.8 allow local users to execute arbitrary code via cra…

Mitigation only
Fix from $1,950 2006-11-30
Mac Os X MEDIUM 5.0
CVE-2006-4407

The Security Framework in Apple Mac OS X 10.3.x up to 10.3.9 does not properly prioritize encryption ciphers when negotiating the strongest shared ci…

Mitigation only
Fix from $1,600 2006-11-30
Mac Os X MEDIUM 5.0
CVE-2006-4408

The Security Framework in Apple Mac OS X 10.4 through 10.4.8 allows remote attackers to cause a denial of service (resource consumption) via certain …

Mitigation only
Fix from $1,600 2006-11-30
Mac Os X MEDIUM 5.0
CVE-2006-4409

The Online Certificate Status Protocol (OCSP) service in the Security Framework in Apple Mac OS X 10.4 through 10.4.8 retrieve certificate revocation…

Mitigation only
Fix from $1,600 2006-11-30
Mac Os X HIGH 9.3
CVE-2006-6061EPSS 9%

com.apple.AppleDiskImageController in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to execute arbitrary code via a mal…

No fix yet
Fix from $1,950 2006-11-22
Mac Os X MEDIUM 5.1
CVE-2006-6062EPSS 5%

Unspecified vulnerability in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to cause a denial of service (crash) via a m…

No fix yet
Fix from $1,600 2006-11-22
Mac Os X MEDIUM 5.0
CVE-2006-6015

Buffer overflow in the JavaScript implementation in Safari on Apple Mac OS X 10.4 allows remote attackers to cause a denial of service (application c…

No fix yet
Fix from $1,600 2006-11-21
Mac Os X HIGH 7.5
CVE-2006-5710EPSS 19%

The Airport driver for certain Orinoco based Airport cards in Darwin kernel 8.8.0 in Apple Mac OS X 10.4.8, and possibly other versions, allows remot…

No fix yet
Fix from $1,950 2006-11-04
Mac Os X HIGH 7.2
CVE-2006-3507

Multiple stack-based buffer overflows in the AirPort wireless driver on Apple Mac OS X 10.3.9 and 10.4.7 allow physically proximate attackers to exec…

Mitigation only
Fix from $1,950 2006-09-21
Mac Os X HIGH 7.2
CVE-2006-3508

Heap-based buffer overflow in the AirPort wireless driver on Apple Mac OS X 10.4.7 allows physically proximate attackers to cause a denial of service…

Mitigation only
Fix from $1,950 2006-09-21
Mac Os X HIGH 7.2
CVE-2006-3509

Integer overflow in the API for the AirPort wireless driver on Apple Mac OS X 10.4.7 might allow physically proximate attackers to cause a denial of …

Mitigation only
Fix from $1,950 2006-09-21
Mac Os X MEDIUM 5.1
CVE-2006-0395EPSS 54%

The Download Validation in Mail in Mac OS X 10.4 does not properly recognize attachment file types to warn a user of an unsafe type, which allows use…

Mitigation only
Fix from $1,600 2006-08-05
Mac Os X HIGH 7.5
CVE-2006-3505

WebKit in Apple Mac OS X 10.3.9 and 10.4.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a cra…

Mitigation only
Fix from $1,950 2006-08-03
Mac Os X HIGH 7.2
CVE-2006-3500

The dynamic linker (dyld) in Apple Mac OS X 10.4.7 allows local users to execute arbitrary code via an "improperly handled condition" that leads to u…

Mitigation only
Fix from $1,950 2006-08-03