CVE-2007-0753: High severity Apple iOS and macOS vulnerability
Published May 24, 2007
·Updated
Format string vulnerability in the VPN daemon (vpnd) in Apple Mac OS X 10.3.9 and 10.4.9 allows local users to execute arbitrary code via the -i parameter.
Affected Software
40 affected components
Apple iOS and macOS=10.4.3
Apple Mac OS X Server=10.4.3
Apple Mac OS X Server=10.3.2
Apple Mac OS X Server=10.4.9
Apple Mac OS X Server=10.3.7
Apple Mac OS X Server=10.3.5
Apple iOS and macOS=10.3.1
Apple iOS and macOS=10.3.5
Apple iOS and macOS=10.4.1
Apple Mac OS X Server=10.4.2
Apple Mac OS X Server=10.3.3
Apple Mac OS X Server=10.4.4
Apple Mac OS X Server=10.4.1
Apple iOS and macOS=10.4.9
Apple iOS and macOS=10.4.7
Apple iOS and macOS=10.4.4
Apple Mac OS X Server=10.3.4
Apple iOS and macOS=10.3.2
Apple iOS and macOS=10.3.7
Apple Mac OS X Server=10.4
Apple Mac OS X Server=10.4.5
Apple iOS and macOS=10.3.6
Apple Mac OS X Server=10.3
Apple Mac OS X Server=10.3.8
Apple iOS and macOS=10.4
Apple Mac OS X Server=10.4.6
Apple Mac OS X Server=10.3.9
Apple Mac OS X Server=10.4.8
Apple iOS and macOS=10.4.6
Apple iOS and macOS=10.3.8
Apple Mac OS X Server=10.3.1
Apple iOS and macOS=10.4.5
Apple iOS and macOS=10.3.9
Apple iOS and macOS=10.3.4
Apple iOS and macOS=10.4.8
Apple iOS and macOS=10.3.3
Apple Mac OS X Server=10.4.7
Apple iOS and macOS=10.4.2
Apple iOS and macOS=10.3
Apple Mac OS X Server=10.3.6
Event History
May 24, 2007
CVE Published
10:30 PM
May 25, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-0753?
CVE-2007-0753 has a moderate severity level due to the potential for arbitrary code execution by local users.
2
How do I fix CVE-2007-0753?
To fix CVE-2007-0753, it is recommended to update to the latest versions of Mac OS X or Mac OS X Server where the vulnerability has been patched.
3
Which versions of macOS are affected by CVE-2007-0753?
CVE-2007-0753 affects Apple Mac OS X versions 10.3.1 through 10.3.9 and 10.4.1 through 10.4.9.
4
Can CVE-2007-0753 be exploited remotely?
No, CVE-2007-0753 is a local vulnerability that requires user access to exploit.
5
What component is vulnerable in CVE-2007-0753?
The vulnerability exists in the VPN daemon (vpnd) of Apple Mac OS X.