First published: Tue Jan 23 2007(Updated: )
Format string vulnerability in Apple iChat 3.1.6 allows remote attackers to cause a denial of service (null pointer dereference and application crash) and possibly execute arbitrary code via format string specifiers in an aim:// URI.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iChat Server | =3.1.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0021 has a high severity level due to its potential for causing application crashes and executing arbitrary code.
Fixing CVE-2007-0021 involves updating Apple iChat to version 3.1.7 or later.
The impacts of CVE-2007-0021 include denial of service through application crashes and possible arbitrary code execution.
CVE-2007-0021 specifically affects Apple iChat version 3.1.6.
CVE-2007-0021 can be exploited by remote attackers targeting users of Apple iChat version 3.1.6.