CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2010-0511

    Last Modified: 11 Apr 2025

    Podcast Producer in Apple Mac OS X 10.6 before 10.6.3 deletes the access restrictions of a Podcast Composer workflow when this workflow is overwritten, which allows attackers to access a workflow via unspecified vectors.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0514

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.261 encoding.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0515

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with H.264 encoding.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0517

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with M-JPEG encoding, which causes QuickTime to calculate a buffer size using height and width fields, but to use a different field to control the length of a copy operation.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0518

    Last Modified: 11 Apr 2025

    QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with Sorenson encoding.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0519

    Last Modified: 11 Apr 2025

    Integer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a FlashPix image with a malformed SubImage Header Stream containing a NumberOfTiles field with a large value.

    Published: 30 Mar 2010
    5
    Medium

    CVE-2010-0525

    Last Modified: 11 Apr 2025

    Mail in Apple Mac OS X before 10.6.3 does not properly enforce the key usage extension during processing of a keychain that specifies multiple certificates for an e-mail recipient, which might make it easier for remote attackers to obtain sensitive information via a brute-force attack on a weakly encrypted e-mail message.

    Published: 30 Mar 2010
    4
    Medium

    CVE-2010-0534

    Last Modified: 11 Apr 2025

    Wiki Server in Apple Mac OS X 10.6 before 10.6.3 does not enforce the service access control list (SACL) for weblogs during weblog creation, which allows remote authenticated users to publish content via HTTP requests.

    Published: 30 Mar 2010
    6.5
    Medium

    CVE-2010-0535

    Last Modified: 11 Apr 2025

    Dovecot in Apple Mac OS X 10.6 before 10.6.3, when Kerberos is enabled, does not properly enforce the service access control list (SACL) for sending and receiving e-mail, which allows remote authenticated users to bypass intended access restrictions via unspecified vectors.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0497

    Last Modified: 11 Apr 2025

    Disk Images in Apple Mac OS X before 10.6.3 does not provide the expected warning for an unsafe file type in an internet enabled disk image, which makes it easier for user-assisted remote attackers to execute arbitrary code via a package file type.

    Published: 30 Mar 2010
    7.8
    High

    CVE-2010-0500

    Last Modified: 11 Apr 2025

    Event Monitor in Apple Mac OS X before 10.6.3 does not properly validate hostnames of SSH clients, which allows remote attackers to cause a denial of service (arbitrary client blacklisting) via a crafted DNS PTR record, related to a "plist injection issue."

    Published: 30 Mar 2010
    7.5
    High

    CVE-2010-0504

    Last Modified: 11 Apr 2025

    Multiple stack-based buffer overflows in iChat Server in Apple Mac OS X Server before 10.6.3 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.

    Published: 30 Mar 2010
    9.3
    Critical

    CVE-2010-0512

    Last Modified: 11 Apr 2025

    The Accounts Preferences implementation in Apple Mac OS X 10.6 before 10.6.3, when a network account server is used, does not support Login Window access control that is based solely on group membership, which allows attackers to bypass intended access restrictions by entering login credentials.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0513

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in PS Normalizer in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PostScript document.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0516

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with RLE encoding, which triggers memory corruption when the length of decompressed data exceeds that of the allocated heap chunk.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0520

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in QuickTimeAuthoring.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted FLC file, related to crafted DELTA_FLI chunks and untrusted length values in a .fli file, which are not properly handled during decompression.

    Published: 30 Mar 2010
    5
    Medium

    CVE-2010-0521

    Last Modified: 11 Apr 2025

    Server Admin in Apple Mac OS X Server before 10.6.3 does not properly enforce authentication for directory binding, which allows remote attackers to obtain potentially sensitive information from Open Directory via unspecified LDAP requests.

    Published: 30 Mar 2010
    5
    Medium

    CVE-2010-0523

    Last Modified: 11 Apr 2025

    Wiki Server in Apple Mac OS X 10.5.8 does not restrict the file types of uploaded files, which allows remote attackers to obtain sensitive information or possibly have unspecified other impact via a crafted file, as demonstrated by a Java applet.

    Published: 30 Mar 2010
    7.5
    High

    CVE-2010-0524

    Last Modified: 11 Apr 2025

    The default configuration of the FreeRADIUS server in Apple Mac OS X Server before 10.6.3 permits EAP-TLS authenticated connections on the basis of an arbitrary client certificate, which allows remote attackers to obtain network connectivity via a crafted RADIUS Access Request message.

    Published: 30 Mar 2010
    4.3
    Medium

    CVE-2010-0526

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in QuickTimeMPEG.qtx in QuickTime in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted genl atom in a QuickTime movie file with MPEG encoding, which is not properly handled during decompression.

    Published: 30 Mar 2010
    2.6
    Low

    CVE-2010-0537

    Last Modified: 11 Apr 2025

    DesktopServices in Apple Mac OS X 10.6 before 10.6.3 does not properly resolve pathnames in certain circumstances involving an application's save panel, which allows user-assisted remote attackers to trigger unintended remote file copying via a crafted share name.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0505

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in ImageIO in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JP2 (JPEG2000) image, related to incorrect calculation and the CGImageReadGetBytesAtOffset function.

    Published: 30 Mar 2010
    6.5
    Medium

    CVE-2010-0503

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in iChat Server in Apple Mac OS X Server 10.5.8 allows remote authenticated users to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.

    Published: 30 Mar 2010
    9
    Critical

    CVE-2010-0522

    Last Modified: 11 Apr 2025

    Server Admin in Apple Mac OS X Server 10.5.8 does not properly determine the privileges of users who had former membership in the admin group, which allows remote authenticated users to leverage this former membership to obtain a server connection via screen sharing.

    Published: 30 Mar 2010
    6.4
    Medium

    CVE-2009-2801

    Last Modified: 11 Apr 2025

    The Application Firewall in Apple Mac OS X 10.5.8 drops unspecified firewall rules after a reboot, which might allow remote attackers to bypass intended access restrictions via packet data, related to a "timing issue."

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0056

    Last Modified: 11 Apr 2025

    Buffer overflow in Cocoa spell checking in AppKit in Apple Mac OS X 10.5.8 allows user-assisted remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted document.

    Published: 30 Mar 2010
    7.5
    High

    CVE-2010-0057

    Last Modified: 11 Apr 2025

    AFP Server in Apple Mac OS X before 10.6.3 does not prevent guest use of AFP shares when guest access is disabled, which allows remote attackers to bypass intended access restrictions via a mount request.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0059

    Last Modified: 11 Apr 2025

    CoreAudio in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via crafted audio content with QDM2 encoding, which triggers a buffer overflow due to inconsistent length fields, related to QDCA.

    Published: 30 Mar 2010
    7.5
    High

    CVE-2010-0533

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in AFP Server in Apple Mac OS X before 10.6.3 allows remote attackers to list a share root's parent directory, and read and modify files in that directory, via unspecified vectors.

    Published: 30 Mar 2010
    6.4
    Medium

    CVE-2010-0058

    Last Modified: 11 Apr 2025

    freshclam in ClamAV in Apple Mac OS X 10.5.8 with Security Update 2009-005 has an incorrect launchd.plist ProgramArguments key and consequently does not run, which might allow remote attackers to introduce viruses into the system.

    Published: 30 Mar 2010
    4.3
    Medium

    CVE-2010-0091

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality via unknown vectors, a different vulnerability than CVE-2010-0084.

    Published: 30 Mar 2010
    5
    Medium

    CVE-2010-0089

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect availability via unknown vectors.

    Published: 30 Mar 2010
    5.1
    Medium

    CVE-2010-0082

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the HotSpot Server component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

    Published: 30 Mar 2010
    5.1
    Medium

    CVE-2010-0085

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0088.

    Published: 30 Mar 2010
    7.5
    High

    CVE-2010-0087

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

    Published: 30 Mar 2010
    5.1
    Medium

    CVE-2010-0092

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, and 5.0 Update 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.

    Published: 30 Mar 2010
    5.1
    Medium

    CVE-2010-0093

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0095.

    Published: 30 Mar 2010
    9.3
    Critical

    CVE-2010-0176

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."

    Published: 30 Mar 2010
    5.1
    Medium

    CVE-2010-0179

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response.

    Published: 30 Mar 2010
    4.3
    Medium

    CVE-2010-0182

    Last Modified: 11 Apr 2025

    The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.

    Published: 30 Mar 2010
    7.4
    High

    CVE-2010-0430

    Last Modified: 11 Apr 2025

    libspice, as used in QEMU-KVM in Red Hat Enterprise Virtualization Hypervisor (aka RHEV-H or rhev-hypervisor) before 5.5-2.2 and possibly other products, allows guest OS users to read from or write to arbitrary QEMU memory by modifying the address that is used by Cairo for memory mappings.

    Published: 30 Mar 2010
    5.5
    Medium

    CVE-2013-2128

    Last Modified: 11 Apr 2025

    The tcp_read_sock function in net/ipv4/tcp.c in the Linux kernel before 2.6.34 does not properly manage skb consumption, which allows local users to cause a denial of service (system crash) via a crafted splice system call for a TCP socket.

    Published: 30 Mar 2010
    5
    Medium

    CVE-2010-0084

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality via unknown vectors, a different vulnerability than CVE-2010-0091.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0088

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, 1.4.2_25, and 1.3.1_27 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0085.

    Published: 30 Mar 2010
    5.8
    Medium

    CVE-2010-0090

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Web Start, Java Plug-in component in Oracle Java SE and Java for Business 6 Update 18 allows remote attackers to affect integrity and availability via unknown vectors.

    Published: 30 Mar 2010
    7.5
    High

    CVE-2010-0094

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18 and 5.0 Update 23 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the March 2010 CPU. Oracle has not commented on claims from a reliable researcher that this is due to missing privilege checks during deserialization of RMIConnectionImpl objects, which allows remote attackers to call system-level Java functions via the ClassLoader of a constructor that is being deserialized.

    Published: 30 Mar 2010
    6.8
    Medium

    CVE-2010-0095

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE and Java for Business 6 Update 18, 5.0 Update 23, and 1.4.2_25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a different vulnerability than CVE-2010-0093.

    Published: 30 Mar 2010
    10
    Critical

    CVE-2010-0174

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 30 Mar 2010
    9.3
    Critical

    CVE-2010-0175

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors that trigger a call to the handler for the select event for XUL tree items.

    Published: 30 Mar 2010
    9.3
    Critical

    CVE-2010-0177

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, frees the contents of the window.navigator.plugins array while a reference to an array element is still active, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors, related to a "dangling pointer vulnerability."

    Published: 30 Mar 2010