navigation bar left navigation bar right

navigation left tab Advisories navigation right tab
navigation left tab Research navigation right tab
navigation left tab Forums navigation right tab
navigation left tab Create Profile navigation right tab
navigation left tab Our Commitment navigation right tab
Database
Search
Advisories by Product
Advisories by Vendor
Terminology
Report Vulnerability
Insecure Library Loading

Vulnerability Report: Apple Macintosh OS X

This vulnerability report for Apple Macintosh OS X contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.

If you have information about a new or an existing vulnerability in Apple Macintosh OS X then you are more than welcome to contact us.


Table of Contents

1. Product Summary Only

2. Secunia Advisory Statistics (All time)
2.1. Statistics for 2014
2.2. Statistics for 2013
2.3. Statistics for 2012
2.4. Statistics for 2011
2.5. Statistics for 2010
2.6. Statistics for 2009
2.7. Statistics for 2008
2.8. Statistics for 2007
2.9. Statistics for 2006
2.10. Statistics for 2005
2.11. Statistics for 2004
2.12. Statistics for 2003

3. List of Secunia Advisories (All time)
3.1. List for 2014
3.2. List for 2013
3.3. List for 2012
3.4. List for 2011
3.5. List for 2010
3.6. List for 2009
3.7. List for 2008
3.8. List for 2007
3.9. List for 2006
3.10. List for 2005
3.11. List for 2004
3.12. List for 2003

4. Send Feedback
 
Vendor, Links, and Unpatched Vulnerabilities

Vendor Apple

Product Link View Here (Link to external site)

Affected By 184 Secunia advisories
2210 Vulnerabilities

Monitor Product Receive alerts for this product





12 Secunia Advisories in 2010

Secunia has issued a total of 12 Secunia advisories in 2010 for Apple Macintosh OS X. Currently, 17% (2 out of 12) are marked as unpatched with the most severe being rated Less critical

More information about the specific Secunia advisories affecting Apple Macintosh OS X can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.



patched Apple Mac OS X Dovecot Memory Aliasing Security Issue
Vendor Patch. Secunia Advisory 1 of 12 in 2010. 2,562 views.
Release Date:
2010-11-16
Secunia Advisory ID:
SA42278
Solution Status:
Vendor Patch
Criticality:
Less critical
Impact:
Exposure of sensitive information
Where:
From remote
Short Description:
A security issue has been reported in Mac OS X Server, which can be exploited by malicious users to gain knowledge of sensitive information. [Read More]


patched Apple Mac OS X Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 2 of 12 in 2010. 8,765 views.
Release Date:
2010-11-09
Secunia Advisory ID:
SA42151
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Security Bypass
Cross Site Scripting
Spoofing
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities. [Read More]


patched Apple Mac OS X update for Java
Vendor Patch. Secunia Advisory 3 of 12 in 2010. 2,199 views.
Release Date:
2010-10-21
Secunia Advisory ID:
SA41905
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Manipulation of data
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Apple has issued an update for Java for Mac OS X. This fixes some vulnerabilities, which can be exploited by malicious, local users to gain escalated privileges and by malicious users to cause a DoS (Denial of Service) and by malicious people to manipulate certain data and potentially compromise a user's system. [Read More]


patched Apple Mac OS X AFP Server Security Bypass
Vendor Patch. Secunia Advisory 4 of 12 in 2010. 2,883 views.
Release Date:
2010-09-21
Secunia Advisory ID:
SA41522
Solution Status:
Vendor Patch
Criticality:
Less critical
Impact:
Security Bypass
Where:
From local network
Short Description:
Apple has issued a security update for Mac OS X. This fixes a vulnerability, which can be exploited by malicious people to bypass certain security restrictions. [Read More]


patched Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 5 of 12 in 2010. 3,523 views.
Release Date:
2010-08-25
Secunia Advisory ID:
SA41087
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Hijacking
Security Bypass
Spoofing
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities. [Read More]


unpatched Apple Mac OS X WebDAV Kernel Extension Local Denial of Service
Unpatched. Secunia Advisory 6 of 12 in 2010. 2,701 views.
Release Date:
2010-08-03
Secunia Advisory ID:
SA40674
Solution Status:
Unpatched
Criticality:
Not critical
Impact:
DoS
Where:
Local system
Short Description:
Dan Rosenberg has reported a vulnerability in Apple Mac OS X, which can be exploited by malicious, local users to cause a DoS (Denial of Service). [Read More]


patched Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 7 of 12 in 2010. 10,344 views.
Release Date:
2010-06-16
Secunia Advisory ID:
SA40220
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Hijacking
Security Bypass
Cross Site Scripting
Spoofing
Manipulation of data
Exposure of sensitive information
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities. [Read More]


patched Apple Mac OS X update for Java
Vendor Patch. Secunia Advisory 8 of 12 in 2010. 12,726 views.
Release Date:
2010-05-19
Secunia Advisory ID:
SA39819
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Unknown
Security Bypass
Manipulation of data
Exposure of system information
Exposure of sensitive information
DoS
System access
Where:
From remote
Short Description:
Apple has issued an update for Java for Mac OS X. This fixes some vulnerabilities, which can be exploited by malicious people to bypass certain security restrictions, manipulate certain data, disclose potentially sensitive information, cause a DoS (Denial of Service), or to compromise a user's system. [Read More]


patched Apple Mac OS X Apple Type Services Indexing Vulnerability
Vendor Patch. Secunia Advisory 9 of 12 in 2010. 3,800 views.
Release Date:
2010-04-15
Secunia Advisory ID:
SA39426
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
System access
Where:
From remote
Short Description:
A vulnerability has been reported in Apple Mac OS X, which can be exploited by malicious people to compromise a user's system. [Read More]


patched Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 10 of 12 in 2010. 8,389 views.
Release Date:
2010-03-30
Secunia Advisory ID:
SA39158
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Security Bypass
Cross Site Scripting
Spoofing
Exposure of system information
Exposure of sensitive information
Privilege escalation
DoS
System access
Where:
From remote
Short Description:
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities. [Read More]


patched Apple Mac OS X Security Update Fixes Multiple Vulnerabilities
Vendor Patch. Secunia Advisory 11 of 12 in 2010. 9,297 views.
Release Date:
2010-01-20
Secunia Advisory ID:
SA38241
Solution Status:
Vendor Patch
Criticality:
Highly critical
Impact:
Manipulation of data
Exposure of system information
DoS
System access
Where:
From remote
Short Description:
Apple has issued a security update for Mac OS X, which fixes multiple vulnerabilities. [Read More]


unpatched Apple Mac OS X "strtod()" Floating Point Parsing Memory Corruption
Unpatched. Secunia Advisory 12 of 12 in 2010. 4,647 views.
Release Date:
2010-01-12
Secunia Advisory ID:
SA38066
Solution Status:
Unpatched
Criticality:
Less critical
Impact:
DoS
System access
Where:
From remote
Short Description:
A vulnerability has been discovered in Mac OS X, which can be exploited by malicious people to potentially compromise a vulnerable system. [Read More]





Discuss this Product
A new thread in our forum is automatically created for each Product. Activate the thread by commenting/discussing below.
Subject: Apple Macintosh OS X 
User Message
Caimbul RE: Apple Macintosh OS X
Member 12th May, 2010 23:34
Score: 4
Posts: 1
User Since: 12th May 2010
System Score: N/A
Location: CA
Last edited on 12th May, 2010 23:34
I would like to know why the Product page for OSX doesn't have a section on unpatched Advisories.
I mean that is the whole reason why people would use this page. We wouldn't really care (although the numbers do cause concern) about the quantity of advisories and vulnerabilities. We need to know how many are still unpatched.
There is a section for Win7, XP, even IBM OS/400 6.x..
Was this reply relevant?
+4
-0
Karthik2010 RE: Apple Macintosh OS X
Member 7th Aug, 2010 05:56
Score: 1
Posts: 1
User Since: 7th Aug 2010
System Score: N/A
Location: ES
Last edited on 7th Aug, 2010 05:56
There is a section for Windows XP (Windows NT 5.1), Windows Vista (Windows NT 6.0) and Windows 7 (Windows NT 6.1), ¿ Where are the sections for Panther (OS X 10.3), Tiger (OS X 10.4), Leopard (OS X 10.5) and Snow Leopard (OS X 10.6)?
Was this reply relevant?
+1
-0
RichardD RE: Apple Macintosh OS X
Member 11th Nov, 2010 22:02
Score: 7
Posts: 5
User Since: 4th Mar 2010
System Score: N/A
Location: UK
Last edited on 11th Nov, 2010 22:11
Take a look at the listings for most OSs or applications. Each listing has a title similar to "Product - type vulnerability" or "Product - multiple vulnerabilities".

Now look at the listings for Mac OS (any version). With the exception of the latest entry, all other entries have titles like "Mac OS version patch fixes type vulnerability" or "Mac OS version patch fixes multiple vulnerabilities".

Maybe the staff at Secunia are Mac fan-boys who can't bring themselves to believe that their beloved OS could have a "vulnerability" and console themselves by calling it a "patch" instead?
Was this reply relevant?
+0
-1
ddmarshall RE: Apple Macintosh OS X
Dedicated Contributor 11th Nov, 2010 23:19
Score: 1218
Posts: 971
User Since: 8th Nov 2008
System Score: 98%
Location: UK
I don't think you'll start a Mac v PC war here.

Strangely, all the products Secunia sells are for Windows. I doubt they pay much attention to Apple. They are probably just listing them for completeness.

--
This answer is provided “as-is.” You bear the risk of using it.
Was this reply relevant?
+1
-0

alsiona

RE: Apple Macintosh OS X
[+]
This reply has been minimised due to a negative Relevancy Score.

-

You must be logged in to post a comment.



 Products Solutions Customers Partner Resources Company
 
 Corporate
Vulnerability Intelligence Manager (VIM)
Corporate Software Inspector (CSI)
Consumer
Personal Software Inspector (PSI)
Online Software Inspector (OSI)
 Industry
Compliance
Technology
Integration
 Customers
Testimonials
 MSSP
Technology Partners
References
 Reports
Webinars
Events
 About us
Careers
Memberships
Newsroom


Secunia is a member of FIRST Secunia is a member of EDUcause Secunia is a member of The Open Group Secunia is a member of FS-ISAC
 
Secunia © 2002-2014 Secunia ApS - Rued Langgaards Vej 8, 4th floor, DK-2300 Copenhagen, Denmark - +45 7020 5144
Terms & Conditions and Copyright - Privacy - Report Vulnerability - Disclaimer
follow Secunia on Facebook follow Secunia on Twitter follow Secunia on LinkedIn follow Secunia on YouTube follow Secunia Xing follow Secunias RSS feed follow Secunia on Google+