Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-4268

Integer signedness error in the Networking component in Apple Mac OS X 10.4 through 10.4.10 allows local users to execute arbitrary code via a crafted AppleTalk message with a negative value, which satisfies a signed comparison during mbuf allocation but is later interpreted as an unsigned value, which triggers a heap-based buffer overflow.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 72.7%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 7.2
References
Products affected by CVE-2007-4268
  • Apple » Mac Os X » Version: 10.4.0
    cpe:2.3:o:apple:mac_os_x:10.4.0
  • Apple » Mac Os X » Version: 10.4.1
    cpe:2.3:o:apple:mac_os_x:10.4.1
  • Apple » Mac Os X » Version: 10.4.10
    cpe:2.3:o:apple:mac_os_x:10.4.10
  • Apple » Mac Os X » Version: 10.4.2
    cpe:2.3:o:apple:mac_os_x:10.4.2
  • Apple » Mac Os X » Version: 10.4.3
    cpe:2.3:o:apple:mac_os_x:10.4.3
  • Apple » Mac Os X » Version: 10.4.4
    cpe:2.3:o:apple:mac_os_x:10.4.4
  • Apple » Mac Os X » Version: 10.4.5
    cpe:2.3:o:apple:mac_os_x:10.4.5
  • Apple » Mac Os X » Version: 10.4.6
    cpe:2.3:o:apple:mac_os_x:10.4.6
  • Apple » Mac Os X » Version: 10.4.7
    cpe:2.3:o:apple:mac_os_x:10.4.7
  • Apple » Mac Os X » Version: 10.4.8
    cpe:2.3:o:apple:mac_os_x:10.4.8
  • Apple » Mac Os X » Version: 10.4.9
    cpe:2.3:o:apple:mac_os_x:10.4.9


Contact Us

Shodan ® - All rights reserved