CVE-2015-7988: Null Pointer Dereference
The handleregservicerequest function in mDNSResponder before 625.41.2 allows remote attackers to execute arbitrary code or cause a denial of service (NULL pointer dereference) via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7988?
CVE-2015-7988 has been categorized as a critical vulnerability due to its potential to allow remote code execution and denial of service.
How do I fix CVE-2015-7988?
To fix CVE-2015-7988, users should upgrade to mDNSResponder version 625.41.2 or later, or apply relevant patches provided by Apple.
Which devices are affected by CVE-2015-7988?
CVE-2015-7988 affects multiple Apple devices including certain iPhones, Macs running macOS Yosemite, and AirPort base stations using specific firmware versions.
Can CVE-2015-7988 be exploited remotely?
Yes, CVE-2015-7988 can be exploited remotely, allowing attackers to execute arbitrary code or cause a denial of service.
What components are involved in CVE-2015-7988?
CVE-2015-7988 specifically involves the handle_regservice_request function in mDNSResponder prior to version 625.41.2.