CVE-2007-2386: Buffer Overflow
Published May 24, 2007
·Updated
Buffer overflow in mDNSResponder in Apple Mac OS X 10.4 up to 10.4.9 allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted UPnP Internet Gateway Device (IGD) packet.
Affected Software
9 affected components
Apple iOS and macOS=10.4.3
Apple iOS and macOS=10.4.1
Apple iOS and macOS=10.4.7
Apple iOS and macOS=10.4.4
Apple iOS and macOS=10.4
Apple iOS and macOS=10.4.6
Apple iOS and macOS=10.4.5
Apple iOS and macOS=10.4.8
Apple iOS and macOS=10.4.2
Event History
May 24, 2007
CVE Published
10:30 PM
May 25, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-2386?
CVE-2007-2386 has a high severity rating due to the potential for remote code execution and denial of service.
2
How do I fix CVE-2007-2386?
To fix CVE-2007-2386, you should upgrade to a version of Mac OS X after 10.4.9 that includes the security patch.
3
What systems are affected by CVE-2007-2386?
CVE-2007-2386 affects Apple Mac OS X versions 10.4 through 10.4.9.
4
Can CVE-2007-2386 be exploited remotely?
Yes, CVE-2007-2386 can be exploited remotely through crafted UPnP Internet Gateway Device packets.
5
What type of vulnerability is CVE-2007-2386 classified as?
CVE-2007-2386 is classified as a buffer overflow vulnerability.