6.8

CVE-2007-3745

The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 contains an unsafe interface that is exposed by JDirect, which allows remote attackers to free arbitrary memory and thereby execute arbitrary code.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AppleCore Audio Technologies
   ApplemacOS X Version10.3.9
   ApplemacOS X Version10.4.10
   ApplemacOS X Server Version10.3.9
   ApplemacOS X Server Version10.4.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.69% 0.868
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P