10

CVE-2007-0749

Multiple stack-based buffer overflows in the is_command function in proxy.c in Apple Darwin Streaming Proxy, when using Darwin Streaming Server before 5.5.5, allow remote attackers to execute arbitrary code via a long (1) cmd or (2) server value in an RTSP request.

Data is provided by the National Vulnerability Database (NVD)
AppleDarwin Streaming Server Version4.1.2
AppleDarwin Streaming Server Version5.0.1
AppleDarwin Streaming Server Version5.5.4
AppleDarwin Streaming Server Version4.1.3
   ApplemacOS X Server Version10.2.8
   ApplemacOS X Server Version10.3
   ApplemacOS X Server Version10.3.1
   ApplemacOS X Server Version10.3.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 19.69% 0.949
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C