CVE-2004-0430 – AppleFileServer (OSX) - LoginExt PathName Overflow
https://notcve.org/view.php?id=CVE-2004-0430
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Method (UAM) request with a PathName argument that includes an AFPName type string that is longer than the associated length field. Desbordamiento de búfer basado en la pila en AppleFileServer de MAC OS X 10.3.3 y anteriores permite a atacantes remotos ejecutar código arbitrario mediante un paquete LoginExt para un método de autenticación de usuario (User Authentication Method - UAM) con contraseña en texto plano con un arguemento PathName que incluye un cadena de tipo de AFPName más larga que el campo de longitud asociado. • https://www.exploit-db.com/exploits/16863 https://www.exploit-db.com/exploits/9931 https://www.exploit-db.com/exploits/391 http://lists.apple.com/mhonarc/security-announce/msg00049.html http://secunia.com/advisories/11539 http://securitytracker.com/id?1010039 http://www.atstake.com/research/advisories/2004/a050304-1.txt http://www.kb.cert.org/vuls/id/648406 http://www.securiteam.com/securitynews/5QP0115CUO.html https://exchange.xforce.ibmcloud.com/vulnerabilities/16049 •
CVE-2004-0428
https://notcve.org/view.php?id=CVE-2004-0428
Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an environment variable," has unknown attack vectors and unknown impact. • http://lists.virus.org/macsec-0405/msg00000.html http://secunia.com/advisories/11539 http://securitytracker.com/id?1010045 http://www.auscert.org.au/render.html?it=4070 http://www.securityfocus.com/bid/10270 https://exchange.xforce.ibmcloud.com/vulnerabilities/16051 •
CVE-2004-0167
https://notcve.org/view.php?id=CVE-2004-0167
DiskArbitration in Mac OS X 10.2.8 and 10.3.2 does not properly initialize writeable removable media. DiskArbitration en Mac OS X 10.2.8 y 10.3.2 no inicializa adecuadamente medios extraibles escribibles. • http://lists.apple.com/archives/security-announce/2004/Feb/msg00000.html http://secunia.com/advisories/10959 http://www.kb.cert.org/vuls/id/578886 http://www.osvdb.org/6824 http://www.securityfocus.com/bid/9731 https://exchange.xforce.ibmcloud.com/vulnerabilities/15300 •
CVE-2003-1006 – Apple Mac OSX 10 - CD9660.Util Probe For Mounting Argument Local Buffer Overflow
https://notcve.org/view.php?id=CVE-2003-1006
Buffer overflow in cd9660.util in Apple Mac OS X 10.0 through 10.3.2 and Apple Mac OS X Server 10.0 through 10.3.2 may allow local users to execute arbitrary code via a long command line parameter. Desbordamiento de búfer en cd9660.util de Apple Mac OS X 10.0 a 10.3.2 y Apple Mac OS X Server 10.0 a 10.3.2 puede permitir a usuarios locales ejecutar código arbitrario mediante un parámetro de línea de comandos largo. • https://www.exploit-db.com/exploits/23442 http://docs.info.apple.com/article.html?artnum=61798 http://www.kb.cert.org/vuls/id/878526 http://www.securityfocus.com/archive/1/347578 http://www.securityfocus.com/archive/1/347707 http://www.securityfocus.com/archive/1/348097 http://www.securityfocus.com/bid/9228 https://exchange.xforce.ibmcloud.com/vulnerabilities/13995 •
CVE-2003-1007
https://notcve.org/view.php?id=CVE-2003-1007
AppleFileServer (AFS) in Apple Mac OS X 10.2.8 and 10.3.2 does not properly handle certain malformed requests, with unknown impact. AppleFileServer (AFS) en Apple Mac OS X 10.2.8 y 10.3.2 no maneja adecuadamente ciertas peticiones malformadas, con impacto desconocido. • http://docs.info.apple.com/article.html?artnum=61798 http://securitytracker.com/id?1008532 http://www.securityfocus.com/bid/9264 https://exchange.xforce.ibmcloud.com/vulnerabilities/14051 •