First published: Sat Nov 04 2006(Updated: )
The Airport driver for certain Orinoco based Airport cards in Darwin kernel 8.8.0 in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to execute arbitrary code via an 802.11 probe response frame without any valid information element (IE) fields after the header, which triggers a heap-based buffer overflow.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Darwin kernel | =8.8.0 | |
Apple iOS and macOS | =10.4.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5710 is considered a high severity vulnerability due to the potential for remote code execution.
To fix CVE-2006-5710, update your macOS to a version that addresses this vulnerability such as patches released after 10.4.8.
CVE-2006-5710 affects users running Darwin kernel 8.8.0 and Mac OS X 10.4.8, particularly on certain Orinoco based Airport cards.
Yes, CVE-2006-5710 can be exploited remotely through malicious 802.11 probe response frames.
CVE-2006-5710 enables attackers to execute arbitrary code on the affected systems.