Apple Security Advisories · May 2005 — Apple Security Advisories
22 advisories 22 CVEs

Apple-vendor CVEs for 2005-05. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2005-1333

macOSEPSS <= 49%HIGH2005-05-04

Directory traversal vulnerability in the Bluetooth file and object exchange (OBEX) services in Mac OS X 10.3.9 allows remote attackers to read arbitrary files.

CVEs:CVE-2005-1333

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1260

OtherEPSS <= 49%HIGH2005-05-19

bzip2 allows remote attackers to cause a denial of service (hard drive consumption) via a crafted bzip2 file that causes an infinite loop (a.k.a "decompression bomb").

CVEs:CVE-2005-1260

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1248

OtherEPSS <= 49%CRITICAL2005-05-16

Buffer overflow in Apple iTunes before 4.8 allows remote attackers to execute arbitrary code via a crafted MPEG4 file.

CVEs:CVE-2005-1248

Affected products

ProductStatusVendorPackageEcosystem
itunes affected apple
Upstream advisory

CVE-2005-1342

macOSEPSS <= 49%CRITICAL2005-05-03

The x-man-page: URI handler for Apple Terminal 1.4.4 in Mac OS X 10.3.9 does not cleanse terminal escape sequences, which allows remote attackers to execute arbitrary commands.

CVEs:CVE-2005-1342

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
terminal affected apple
Upstream advisory

CVE-2005-1307

macOSEPSS <= 49%HIGH2005-05-17

The (1) stopserver.sh and (2) startserver.sh scripts in Adobe Version Cue on Mac OS X uses the current working directory to find and execute the productname.sh script, which allows local users to execute arbitrary code by copying and calling the script...

CVEs:CVE-2005-1307

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1341

OtherEPSS <= 49%CRITICAL2005-05-03

Apple Terminal 1.4.4 allows attackers to execute arbitrary commands via terminal escape sequences.

CVEs:CVE-2005-1341

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
terminal affected apple
Upstream advisory

CVE-2005-1331

macOSEPSS <= 49%MEDIUM2005-05-03

The AppleScript Editor in Mac OS X 10.3.9 does not properly display script code for an applescript: URI, which can result in code that is different than the actual code that would be run, which could allow remote attackers to trick users into executing...

CVEs:CVE-2005-1331

Affected products

ProductStatusVendorPackageEcosystem
applescript affected apple
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2005-1385

SafariEPSS <= 49%HIGH2005-05-02

Safari 1.3 allows remote attackers to cause a denial of service (application crash) via a long https URL that triggers a NULL pointer dereference.

CVEs:CVE-2005-1385

Affected products

ProductStatusVendorPackageEcosystem
safari affected apple
Upstream advisory

CVE-2005-1579

macOSEPSS <= 49%HIGH2005-05-12

Apple QuickTime Player 7.0 on Mac OS X 10.4 allows remote attackers to obtain sensitive information via a .mov file with a Quartz Composer composition (.qtz) file that uses certain patches to read local information, then other patches to send the infor...

CVEs:CVE-2005-1579

Affected products

ProductStatusVendorPackageEcosystem
quicktime affected apple
Upstream advisory

CVE-2005-1408

OtherEPSS <= 49%HIGH2005-05-26

Apple Keynote 2.0 and 2.0.1 allows remote attackers to read arbitrary files via the keynote: URI handler in a crafted Keynote presentation.

CVEs:CVE-2005-1408

Affected products

ProductStatusVendorPackageEcosystem
keynote affected apple
Upstream advisory

CVE-2005-1339

macOSEPSS <= 49%HIGH2005-05-04

lukemftpd in Mac OS X 10.3.9 allows remote authenticated users to escape the chroot environment by logging in with their full name.

CVEs:CVE-2005-1339

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2005-1340

macOSEPSS <= 49%HIGH2005-05-04

The HTTP proxy service in Server Admin for Mac OS X 10.3.9 does not restrict access when it is enabled, which allows remote attackers to use the proxy.

CVEs:CVE-2005-1340

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1337

macOSEPSS <= 49%CRITICAL2005-05-04

Apple Help Viewer 2.0.7 and 3.0.0 in Mac OS X 10.3.9 allows remote attackers to read and execute arbitrary scrpts with less restrictive privileges via a help:// URI.

CVEs:CVE-2005-1337

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2005-0974

macOSEPSS <= 49%HIGH2005-05-12

Unknown vulnerability in the nfs_mount call in Mac OS X 10.3.9 and earlier allows local users to gain privileges via crafted arguments.

CVEs:CVE-2005-0974

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-0971

macOSEPSS <= 49%HIGH2005-05-12

Stack-based buffer overflow in the semop system call in Mac OS X 10.3.9 and earlier allows local users to gain privileges via crafted arguments.

CVEs:CVE-2005-0971

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1430

macOSEPSS <= 49%LOW2005-05-03

Mac OS X 10.3.x and earlier uses insecure permissions for a pseudo terminal tty (pty) that is managed by a non-setuid program, which allows local users to read or modify sessions of other users.

CVEs:CVE-2005-1430

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2005-0972

macOSEPSS <= 49%HIGH2005-05-12

Integer overflow in the searchfs system call in Mac OS X 10.3.9 and earlier allows local users to execute arbitrary code via crafted parameters.

CVEs:CVE-2005-0972

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2005-0969

macOSEPSS <= 49%HIGH2005-05-12

Heap-based buffer overflow in the syscall emulation functionality in Mac OS X before 10.3.9 allows local users to cause a denial of service (kernel panic) and possibly execute arbitrary code via crafted parameters.

CVEs:CVE-2005-0969

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1330

macOSEPSS <= 49%HIGH2005-05-04

AppKit in Mac OS X 10.3.9 allows attackers to cause a denial of service (Cocoa application crash) via a malformed TIFF image that causes the NXSeek to use an incorrect offset, leading to an unhandled exception.

CVEs:CVE-2005-1330

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
mac_os_x_server affected apple
Upstream advisory

CVE-2005-1338

macOSEPSS <= 49%MEDIUM2005-05-04

Mac OS X 10.3.9, when using an LDAP server that does not use ldap_extended_operation, may store initial LDAP passwords for new accounts in plaintext.

CVEs:CVE-2005-1338

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-1472

macOSEPSS <= 49%HIGH2005-05-19

Certain system calls in Apple Mac OS X 10.4.1 do not properly enforce the permissions of certain directories without the POSIX read bit set, but with the execute bits set for group or other, which allows local users to list files in otherwise restricte...

CVEs:CVE-2005-1472

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

CVE-2005-0973

macOSEPSS <= 49%MEDIUM2005-05-12

Unknown vulnerability in the setsockopt system call in Mac OS X 10.3.9 and earlier allows local users to cause a denial of service (memory exhaustion) via crafted arguments.

CVEs:CVE-2005-0973

Affected products

ProductStatusVendorPackageEcosystem
mac_os_x affected apple
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.