Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
MEDIUM 6.2
CVE-2009-2836
Race condition in Login Window in Apple Mac OS X 10.6.x before 10.6.2, when at least one account has a blank password, allows attackers to bypass pas…
Mac Os X
Patch available
MEDIUM 5.8
CVE-2009-2831
Dictionary in Apple Mac OS X 10.5.8 allows remote attackers to create arbitrary files with any contents, and thereby execute arbitrary code, via craf…
Mac Os X
Patch available
MEDIUM 5.4
CVE-2009-2808
Help Viewer in Apple Mac OS X before 10.6.2 does not use an HTTPS connection to retrieve Apple Help content from a web site, which allows man-in-the-…
Mac Os X
after 10.6.1
MEDIUM 5.1
CVE-2009-2832
Buffer overflow in FTP Server in Apple Mac OS X before 10.6.2 allows remote attackers to execute arbitrary code or cause a denial of service (daemon …
Mac Os X Server
after 10.6.1
MEDIUM 5.0
CVE-2009-2818
Adaptive Firewall in Apple Mac OS X before 10.6.2 does not properly handle invalid usernames in SSH login attempts, which makes it easier for remote …
Mac Os X Server
after 10.6.1
MEDIUM 5.0
CVE-2009-2829
Event Monitor in Apple Mac OS X 10.5.8 does not properly handle crafted authentication data sent to an SSH daemon, which allows remote attackers to c…
Mac Os X Server
Patch available
HIGH 7.5
CVE-2009-3455
Apple Safari, possibly before 4.0.3, on Mac OS X does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field o…
Safari
after 4.0.2
HIGH 9.3
CVE-2009-2817EPSS 9%
Buffer overflow in Apple iTunes before 9.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a…
Itunes
after 9.0
HIGH 7.5
CVE-2009-3273
iPhone Mail in Apple iPhone OS, and iPhone OS for iPod touch, does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof…
Iphone Os
Mitigation only
MEDIUM 5.0
CVE-2009-3272EPSS 6%
Stack consumption vulnerability in WebKit.dll in WebKit in Apple Safari 3.2.3, and possibly other versions before 4.1.2, allows remote attackers to c…
Safari
No fix yet
HIGH 7.2
CVE-2009-2807
Heap-based buffer overflow in the USB backend in CUPS in Apple Mac OS X 10.5.8 allows local users to gain privileges via unspecified vectors.
Mac Os X
Patch available
MEDIUM 6.8
CVE-2009-2803
CarbonCore in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (memory corruption and applic…
Mac Os X
Patch available
MEDIUM 6.8
CVE-2009-2804
Integer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5.8, and Safari before 4.0.4 on Windows, allows remote attackers to execute arbitrary …
Safari
after 4.0.3
MEDIUM 6.8
CVE-2009-2805
Integer overflow in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service …
Mac Os X
Patch available
MEDIUM 6.8
CVE-2009-2809
ImageIO in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a…
Mac Os X
Patch available
MEDIUM 6.8
CVE-2009-2811
Incomplete blacklist vulnerability in Launch Services in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code via a …
Mac Os X
Patch available
MEDIUM 6.8
CVE-2009-2812
Launch Services in Apple Mac OS X 10.5.8 does not properly recognize an unsafe Uniform Type Identifier (UTI) in an exported document type in a downlo…
Mac Os X
Patch available
MEDIUM 6.8
CVE-2009-2800
Buffer overflow in Alias Manager in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (applic…
Mac Os X
Patch available
HIGH 7.8
CVE-2009-2815
The Telephony component in Apple iPhone OS before 3.1 does not properly handle SMS arrival notifications, which allows remote attackers to cause a de…
Iphone Os
after 3.0.1
HIGH 7.2
CVE-2009-2795
Heap-based buffer overflow in the Recovery Mode component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, allows local user…
Iphone Os
3.1 / 3.1.1+
MEDIUM 6.8
CVE-2009-2206
Multiple heap-based buffer overflows in the AudioCodecs library in the CoreAudio component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 …
Iphone Os
after 3.0.1
MEDIUM 6.8
CVE-2009-2205
Stack-based buffer overflow in the Java Web Start command launcher in Java for Mac OS X 10.5 before Update 5 allows attackers to execute arbitrary co…
Mac Os X
after 2
HIGH 9.3
CVE-2009-2195EPSS 13%
Buffer overflow in WebKit in Apple Safari before 4.0.3 allows remote attackers to execute arbitrary code or cause a denial of service (application cr…
Safari
after 4.0.2
HIGH 7.1
CVE-2009-2200
WebKit in Apple Safari before 4.0.3 does not properly restrict the URL scheme of the pluginspage attribute of an EMBED element, which allows user-ass…
Safari
after 4.0.2
MEDIUM 5.8
CVE-2009-2199
Incomplete blacklist vulnerability in WebKit in Apple Safari before 4.0.3, as used on iPhone OS before 3.1, iPhone OS before 3.1.1 for iPod touch, an…
Safari
after 4.0.2
MEDIUM 5.0
CVE-2009-2196
Unspecified vulnerability in Apple Safari 4 before 4.0.3 allows remote web servers to place an arbitrary web site in the Top Sites view, and possibly…
Safari
Patch available
HIGH 10.0
CVE-2009-2193EPSS 9%
Buffer overflow in the kernel in Apple Mac OS X 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (sy…
Mac Os X
Patch available
HIGH 9.3
CVE-2009-1726EPSS 8%
Heap-based buffer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5 before 10.5.8 allows remote attackers to execute arbitrary code or cause a…
Mac Os X
Patch available
HIGH 9.3
CVE-2009-2188EPSS 8%
Buffer overflow in ImageIO in Apple Mac OS X 10.5 before 10.5.8, and Safari before 4.0.3, allows remote attackers to execute arbitrary code or cause …
Mac Os X
Patch available
HIGH 7.8
CVE-2009-2190
launchd in Apple Mac OS X 10.5 before 10.5.8 allows remote attackers to cause a denial of service (individual service outage) by making many connecti…
Mac Os X
Patch available