CVE-2005-2521
https://notcve.org/view.php?id=CVE-2005-2521
19 Aug 2005 — Buffer overflow in traceroute in Mac OS X 10.3.9 allows local users to execute arbitrary code via unknown vectors. • http://lists.apple.com/archives/security-announce/2005//Aug/msg00001.html •
CVE-2005-1689
https://notcve.org/view.php?id=CVE-2005-1689
17 Jul 2005 — Double free vulnerability in the krb5_recvauth function in MIT Kerberos 5 (krb5) 1.4.1 and earlier allows remote attackers to execute arbitrary code via certain error conditions. Vulnerabilidad de doble liberación de memoria en la función krb5_recvauth en MIT Kerberos 5 (krb5) 1.4.1 y anteriores permite que atacantes remotos ejecuten código arbitrario mediante ciertas condiciones de error. • ftp://patches.sgi.com/support/free/security/advisories/20050703-01-U.asc • CWE-415: Double Free •
CVE-2005-1722
https://notcve.org/view.php?id=CVE-2005-1722
14 Jun 2005 — Unknown vulnerability in the CoreGraphics Window Server for Mac OS X 10.4.x up to 10.4.1 allows local users to inject arbitrary commands into root sessions. • http://lists.apple.com/archives/security-announce/2005/Jun/msg00000.html •
CVE-2005-1474
https://notcve.org/view.php?id=CVE-2005-1474
09 Jun 2005 — Dashboard in Apple Mac OS X 10.4.1 allows remote attackers to install widgets via Safari without prompting the user, a different vulnerability than CVE-2005-1933. • http://lists.apple.com/archives/security-announce/2005/May/msg00004.html •
CVE-2005-1473
https://notcve.org/view.php?id=CVE-2005-1473
09 Jun 2005 — SecurityAgent in Apple Mac OS X 10.4.1 allows attackers with physical access to bypass the locked screensaver and launch background applications by opening a URL from a text input field. • http://lists.apple.com/archives/security-announce/2005/May/msg00004.html •
CVE-2005-1933
https://notcve.org/view.php?id=CVE-2005-1933
09 Jun 2005 — Dashboard in Apple Mac OS X Tiger 10.4 allows attackers to execute arbitrary commands by overriding the behavior of system widgets via a user widget with the same bundle identifier (CFBundleIdentifier), a different vulnerability than CVE-2005-1474. • http://www.kb.cert.org/vuls/id/983429 •
CVE-2005-1728
https://notcve.org/view.php?id=CVE-2005-1728
08 Jun 2005 — MCX Client for Apple Mac OS X 10.4.x up to 10.4.1 insecurely logs Portable Home Directory credentials, which allows local users to obtain the credentials. • http://lists.apple.com/archives/security-announce/2005/Jun/msg00000.html •
CVE-2005-1260
https://notcve.org/view.php?id=CVE-2005-1260
19 May 2005 — bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a.k.a "decompression bomb"). • ftp://patches.sgi.com/support/free/security/advisories/20060301-01.U.asc • CWE-400: Uncontrolled Resource Consumption •
CVE-2005-1472
https://notcve.org/view.php?id=CVE-2005-1472
19 May 2005 — Certain system calls in Apple Mac OS X 10.4.1 do not properly enforce the permissions of certain directories without the POSIX read bit set, but with the execute bits set for group or other, which allows local users to list files in otherwise restricted directories. • http://lists.apple.com/archives/security-announce/2005/May/msg00004.html •
CVE-2005-1307 – Apple Mac OSX Adobe Version Cue - Local Privilege Escalation
https://notcve.org/view.php?id=CVE-2005-1307
17 May 2005 — The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory to find and execute the productname.sh script, which allows local users to execute arbitrary code by copying and calling the scripts from a user-controlled directory. • https://www.exploit-db.com/exploits/680 •