Apple

Ichat

8 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.69%
  • Veröffentlicht 03.08.2007 10:17:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 does not properly check the bounds of heap read and write operations, which allows remote attackers to execute arbitrary code via a crafted applet.

  • EPSS 3.69%
  • Veröffentlicht 03.08.2007 10:17:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Java interface to CoreAudio on Apple Mac OS X 10.3.9 and 10.4.10 does not restrict object instantiation and manipulation to valid heap addresses, which allows remote attackers to execute arbitrary code via a crafted applet.

  • EPSS 3.23%
  • Veröffentlicht 03.08.2007 10:17:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Buffer overflow in the UPnP IGD (Internet Gateway Device Standardized Device Control Protocol) implementation in iChat on Apple Mac OS X 10.3.9 and 10.4.10 allows network-adjacent remote attackers to execute arbitrary code via a crafted packet.

Exploit
  • EPSS 1.22%
  • Veröffentlicht 16.02.2007 19:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Bonjour functionality in iChat in Apple Mac OS X 10.3.9 allows remote attackers to cause a denial of service (persistent application crash) via unspecified vectors, possibly related to CVE-2007-0614.

Exploit
  • EPSS 5.67%
  • Veröffentlicht 31.01.2007 11:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Bonjour functionality in mDNSResponder, iChat 3.1.6, and InstantMessage framework 428 in Apple Mac OS X 10.4.8 does not check for duplicate entries when adding newly discovered available contacts, which allows remote attackers to cause a denial o...

Exploit
  • EPSS 10.19%
  • Veröffentlicht 31.01.2007 11:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

The Bonjour functionality in mDNSResponder, iChat 3.1.6, and InstantMessage framework 428 in Apple Mac OS X 10.4.8 allows remote attackers to cause a denial of service (persistent application crash) via a crafted phsh hash attribute in a TXT key.

Exploit
  • EPSS 41.58%
  • Veröffentlicht 23.01.2007 00:28:00
  • Zuletzt bearbeitet 09.04.2025 00:30:58

Format string vulnerability in Apple iChat 3.1.6 allows remote attackers to cause a denial of service (null pointer dereference and application crash) and possibly execute arbitrary code via format string specifiers in an aim:// URI.

  • EPSS 0.64%
  • Veröffentlicht 23.12.2004 05:00:00
  • Zuletzt bearbeitet 03.04.2025 01:03:51

Apple iChat AV 2.1, AV 2.0, and 1.0.1 allows remote attackers to execute arbitrary programs via a "link" that references the program.