PT-2016-3732 · Apple · Airport Base Station Firmware

Alexandre Helie

·

Published

2016-07-03

·

Updated

2017-09-01

·

CVE-2015-7029

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple AirPort Base Station Firmware versions prior to 7.6.7 Apple AirPort Base Station Firmware versions 7.7.x prior to 7.7.7
Description The issue is related to the misparsing of DNS data, which can be exploited by remote attackers to execute arbitrary code or cause a denial of service due to memory corruption. The exact vectors used for the exploitation are not specified.
Recommendations For Apple AirPort Base Station Firmware versions prior to 7.6.7, update to version 7.6.7 or later. For Apple AirPort Base Station Firmware versions 7.7.x prior to 7.7.7, update to version 7.7.7 or later.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-7029

Affected Products

Airport Base Station Firmware