CVE-2007-0021: Null Pointer Dereference
Published Jan 23, 2007
·Updated
Format string vulnerability in Apple iChat 3.1.6 allows remote attackers to cause a denial of service (null pointer dereference and application crash) and possibly execute arbitrary code via format string specifiers in an aim:// URI.
Affected Software
1 affected component
Apple iChat=3.1.6
Event History
Jan 23, 2007
CVE Published
12:28 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0021?
CVE-2007-0021 has a high severity level due to its potential for causing application crashes and executing arbitrary code.
2
How do I fix CVE-2007-0021?
Fixing CVE-2007-0021 involves updating Apple iChat to version 3.1.7 or later.
3
What are the potential impacts of CVE-2007-0021?
The impacts of CVE-2007-0021 include denial of service through application crashes and possible arbitrary code execution.
4
Which versions of Apple iChat are affected by CVE-2007-0021?
CVE-2007-0021 specifically affects Apple iChat version 3.1.6.
5
Who can be targeted by CVE-2007-0021?
CVE-2007-0021 can be exploited by remote attackers targeting users of Apple iChat version 3.1.6.