← Back

Mac Os X Server

mac_os_x_server

Vendor: Apple • 655 CVEs

CVEs (655)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Nov 1, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unspecified vulnerability in the Finder Get Info window for Mac OS X 10.4 up to 10.4.2 causes Finder to misrepresent file and group ownership information. NOTE: it is not clear whether this issue satisfies the CVE defin...Show more
Unspecified vulnerability in the Finder Get Info window for Mac OS X 10.4 up to 10.4.2 causes Finder to misrepresent file and group ownership information. NOTE: it is not clear whether this issue satisfies the CVE definition of a vulnerability.Show less
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Nov 1, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Keychain Access in Mac OS X 10.4.2 and earlier keeps a password visible even if a keychain times out while the password is being viewed, which could allow attackers with physical access to obtain the password.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Oct 26, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Mail.app in Mail for Apple Mac OS X 10.3.9 and 10.4.2 includes message contents when using auto-reply rules, which could cause Mail.app to include decrypted message contents for encrypted messages.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Oct 26, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Mail.app in Mail for Apple Mac OS X 10.3.9, when using Kerberos 5 for SMTP authentication, can include uninitialized memory in a message, which might allow remote attackers to obtain sensitive information.
1Apple
3Mac Os X
Mac Os X ServerQuicktime
Apr 16, 2026
Oct 26, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
The Java extensions for QuickTime 6.52 and earlier in Apple Mac OS X 10.3.9 allow untrusted applets to call arbitrary functions in system libraries, which allows remote attackers to execute arbitrary code.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Oct 26, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the "Switch User..." button to appear even though the "Enable fast user switching" setting is disabled, which can allow attackers with physic...Show more
SecurityAgent in Apple Mac OS X 10.4.2, under certain circumstances, can cause the "Switch User..." button to appear even though the "Enable fast user switching" setting is disabled, which can allow attackers with physical access to gain access to the desktop and bypass the "Require password to wake this computer from sleep or screen saver" setting.Show less
2Apple
Perry Kiehtreiber
3Mac Os X
Mac Os X ServerSecurityd
Apr 16, 2026
Oct 26, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
Authorization Services in securityd for Apple Mac OS X 10.3.9 allows local users to gain privileges by granting themselves certain rights that should be restricted to administrators.
1Apple
3Mac Os X
Mac Os X ServerSafari
Apr 16, 2026
Oct 26, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Safari after 2.0 in Apple Mac OS X 10.3.9 allows remote attackers to bypass domain restrictions via crafted web archives that cause Safari to render them as if they came from a different site.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Oct 25, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
The malloc function in the libSystem library in Apple Mac OS X 10.3.9 and 10.4.2 allows local users to overwrite arbitrary files by setting the MallocLogFile environment variable to the target file before running a setui...Show more
The malloc function in the libSystem library in Apple Mac OS X 10.3.9 and 10.4.2 allows local users to overwrite arbitrary files by setting the MallocLogFile environment variable to the target file before running a setuid application.Show less
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Oct 25, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in ImageIO for Apple Mac OS X 10.4.2, as used by applications such as WebCore and Safari, allows remote attackers to execute arbitrary code via a crafted GIF file.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Oct 25, 2005
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Buffer overflow in QuickDraw Manager for Apple OS X 10.3.9 and 10.4.2, as used by applications such as Safari, Mail, and Finder, allows remote attackers to execute arbitrary code via a crafted PICT file.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
10.0 HIGH· v2
Unknown vulnerability in Mac OS X 10.4.2 and earlier, when using Kerberos authentication with LDAP, allows attackers to gain access to a root Terminal window.
1Apple
1Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
The Server Admin tool in servermgr_ipfilter for Mac OS X 10.4 to 10.4.2, when using multiple subnets and Address Groups, does not always properly write firewall rules to the Active Rules when certain conditions occur, wh...Show more
The Server Admin tool in servermgr_ipfilter for Mac OS X 10.4 to 10.4.2, when using multiple subnets and Address Groups, does not always properly write firewall rules to the Active Rules when certain conditions occur, which could result in firewall policies that are less restrictive than intended by the administrator.Show less
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
2.1 LOW· v2
Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
dsidentity in Directory Services in Mac OS X 10.4.2 allows local users to add or remove user accounts.
1Apple
1Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Buffer overflow in Directory Services in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to execute arbitrary code during authentication.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
5.0 MEDIUM· v2
Algorithmic complexity vulnerability in CoreFoundation in Mac OS X 10.3.9 and 10.4.2 allows attackers to cause a denial of service (CPU consumption) via crafted Gregorian dates.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
7.2 HIGH· v2
The System Profiler in Mac OS X 10.4.2 labels a Bluetooth device with "Requires Authentication: No" even when the user has selected the "Require pairing for security" option, which could confuse users about which setting...Show more
The System Profiler in Mac OS X 10.4.2 labels a Bluetooth device with "Requires Authentication: No" even when the user has selected the "Require pairing for security" option, which could confuse users about which setting is valid.Show less
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
4.6 MEDIUM· v2
AppKit for Mac OS X 10.3.9 and 10.4.2 allows attackers with physical access to create local accounts by forcing a particular error to occur at the login window.
1Apple
2Mac Os X
Mac Os X Server
Apr 16, 2026
Aug 19, 2005
N/A· v4
N/A· v3
5.1 MEDIUM· v2
Buffer overflow in AppKit for Mac OS X 10.3.9 and 10.4.2, as used in applications such as TextEdit, allows external user-assisted attackers to execute arbitrary code via a crafted Microsoft Word file.