Apple
apple
8,906 CVEs • 198 products
Products (198)
Click to collapseToggle
Products (198)
Click to collapse
CVEs (8,906)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
2Apple Easy Software Products2Cups Mac Os XApr 16, 2026 Dec 26, 2002 N/A· v4 N/A· v3 10.0 HIGH· v2 jobs.c in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly use the strncat function call when processing the options string, which allows remote attackers to execute arbitrary code via a buffer...Show more |
2Apple Easy Software Products2Cups Mac Os XApr 16, 2026 Dec 26, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing negative arguments to be fed into memcpy() calls via HT...Show more |
2Apple Easy Software Products2Cups Mac Os XApr 16, 2026 Dec 26, 2002 N/A· v4 N/A· v3 10.0 HIGH· v2 Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to add printers without authentication via a certain UDP packet, which can then be used to perform unauthorized activities such as stealing...Show more |
2Apple Easy Software Products2Cups Mac Os XApr 16, 2026 Dec 26, 2002 N/A· v4 N/A· v3 6.2 MEDIUM· v2 Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows local users with lp privileges to create or overwrite arbitrary files via file race conditions, as demonstrated by ice-cream. |
2Apple Cyrusimap3Cyrus Sasl Mac Os XMac Os X ServerApr 16, 2026 Dec 18, 2002 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 Multiple buffer overflows in Cyrus SASL library 2.1.9 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long inputs during user name canonicalization, (2) charact...Show more |
Mac OS X 10.2.2 allows local users to read files that only allow write access via the map_fd() Mach system call. |
Unknown vulnerability in NetInfo Manager application in Mac OS X 10.2.2 allows local users to access restricted parts of a filesystem. |
Mac OS X 10.2.2 allows local users to gain privileges via a mounted ISO 9600 CD, aka "User Privilege Elevation via Mounting an ISO 9600 CD." |
Mac OS X 10.2.2 allows remote attackers to cause a denial of service by accessing the CUPS Printing Web Administration utility, aka "CUPS Printing Web Administration is Remotely Accessible." |
Mac OS X 10.2.2 allows local users to gain privileges by mounting a disk image file that was created on another system, aka "Local User Privilege Elevation via Disk Image File." |
3Apple GnuSgi4Glibc IrixMac Os X+1 moreApr 16, 2026 Nov 12, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The Sun RPC functionality in multiple libc implementations does not provide a time-out mechanism when reading data from TCP connections, which allows remote attackers to cause a denial of service (hang). |
6Apple FreebsdFrees Wan+3 more12Bluefire Ix1035 Router FreebsdFrees Wan+9 moreApr 16, 2026 Nov 4, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 IPSEC implementations including (1) FreeS/WAN and (2) KAME do not properly calculate the length of authentication data, which allows remote attackers to cause a denial of service (kernel panic) via spoofed, short Encapsu...Show more |
Buffer overflow in Apple QuickTime 5.0 ActiveX component allows remote attackers to execute arbitrary code via a long pluginspage field. |
3Apple OpensslOracle5Application Server Corporate Time Outlook ConnectorHttp Server+2 moreApr 16, 2026 Aug 12, 2002 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The ASN1 library in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allows remote attackers to cause a denial of service via invalid encodings. |
3Apple OpensslOracle5Application Server Corporate Time Outlook ConnectorHttp Server+2 moreApr 16, 2026 Aug 12, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 Buffer overflows in OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, allow remote attackers to execute arbitrary code via (1) a large client master key in SSL2 or (2) a large session ID in SSL3. |
3Apple OpensslOracle5Application Server Corporate Time Outlook ConnectorHttp Server+2 moreApr 16, 2026 Aug 12, 2002 N/A· v4 N/A· v3 7.5 HIGH· v2 OpenSSL 0.9.6d and earlier, and 0.9.7-beta2 and earlier, does not properly handle ASCII representations of integers on 64 bit platforms, which could allow attackers to cause a denial of service and possibly execute arbit...Show more |
SoftwareUpdate for MacOS 10.1.x does not use authentication when downloading a software update, which could allow remote attackers to execute arbitrary code by posing as the Apple update server via techniques such as DNS...Show more |
Buffer overflow in Apple QuickTime Player 5.01 and 5.02 allows remote web servers to execute arbitrary code via a response containing a long Content-Type MIME header. |
Apple Personal Web Sharing (PWS) 1.1, 1.5, and 1.5.5, when Web Sharing authentication is enabled, allows remote attackers to cause a denial of service via a long password, possibly due to a buffer overflow. |
Point to Point Protocol daemon (pppd) in MacOS x 10.0 and 10.1 through 10.1.5 provides the username and password on the command line, which allows local users to obtain authentication information via the ps command. |