First published: Fri Aug 03 2007(Updated: )
The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 contains an unsafe interface that is exposed by JDirect, which allows remote attackers to free arbitrary memory and thereby execute arbitrary code.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | =10.3.9 | |
Apple Mac OS X | =10.4.10 | |
Apple Mac OS X Server | =10.3.9 | |
Apple Mac OS X Server | =10.4.10 | |
Apple Core Audio Technologies |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3745 is classified as a high-severity vulnerability due to its ability to allow remote code execution.
To mitigate CVE-2007-3745, it is recommended to update your Java installation and apply any available patches for Mac OS X.
CVE-2007-3745 affects Apple Mac OS X versions 10.3.9 and 10.4.10, as well as corresponding server versions.
CVE-2007-3745 is a vulnerability that involves an unsafe interface allowing attackers to perform memory exploitation.
Yes, CVE-2007-3745 can be exploited remotely by attackers to execute arbitrary code.