CVE-2003-0421: Critical severity Apple Darwin Streaming Server vulnerability
Published Jul 25, 2003
·Updated
Apple QuickTime / Darwin Streaming Server before 4.1.3f allows remote attackers to cause a denial of service (crash) via an MS-DOS device name (e.g. AUX) in a request to HTTP port 1220, a different vulnerability than CVE-2003-0502.
Affected Software
1 affected component
Apple Darwin Streaming Server=4.1.3
Event History
Jul 25, 2003
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Aug 27, 2003
Data Sourced
via NVD·04:00 AM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2003-0421?
CVE-2003-0421 is considered a denial of service vulnerability that can cause a crash of the affected application.
2
How do I fix CVE-2003-0421?
To mitigate CVE-2003-0421, upgrade to Apple QuickTime / Darwin Streaming Server version 4.1.3f or later.
3
What software is affected by CVE-2003-0421?
CVE-2003-0421 affects Apple Darwin Streaming Server version 4.1.3 and earlier.
4
What type of attack does CVE-2003-0421 involve?
CVE-2003-0421 facilitates a denial of service attack through specially crafted requests that include an MS-DOS device name.
5
Can CVE-2003-0421 be exploited remotely?
Yes, CVE-2003-0421 can be exploited remotely by sending a malicious request to the HTTP port 1220.