Vulnerabilities > CVE-2007-0021 - Unspecified vulnerability in Apple Ichat 3.1.6
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN apple
nessus
Summary
Format string vulnerability in Apple iChat 3.1.6 allows remote attackers to cause a denial of service (null pointer dereference and application crash) and possibly execute arbitrary code via format string specifiers in an aim:// URI.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | MacOS X Local Security Checks |
NASL id | MACOSX_SECUPD2007-002.NASL |
description | The remote host is running a version of Mac OS X 10.4 that does not have Security Update 2007-002 applied. This update fixes security flaws in the following applications : - Finder - iChat - UserNotification |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 24354 |
published | 2007-02-16 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/24354 |
title | Mac OS X Multiple Vulnerabilities (Security Update 2007-002) |
code |
|
References
- http://projects.info-pull.com/moab/MOAB-20-01-2007.html
- http://docs.info.apple.com/article.html?artnum=305102
- http://lists.apple.com/archives/Security-announce/2007/Feb/msg00000.html
- http://www.us-cert.gov/cas/techalerts/TA07-047A.html
- http://www.kb.cert.org/vuls/id/794752
- http://www.securityfocus.com/bid/22146
- http://www.securitytracker.com/id?1017661
- http://secunia.com/advisories/24198
- http://osvdb.org/32715
- http://www.vupen.com/english/advisories/2007/0274
- https://exchange.xforce.ibmcloud.com/vulnerabilities/31679