Multiple buffer overflows in mDNSResponder before 625.41.2 allow remote attackers to read or write to out-of-bounds memory locations via vectors involving the (1) GetValueForIPv4Addr, (2) GetValueForMACAddr, (3) rfc3110_import, or (4) CopyNSEC3ResourceRecord function.
References
Link | Resource |
---|---|
https://support.apple.com/HT206846 | Vendor Advisory |
http://www.kb.cert.org/vuls/id/143335 | Third Party Advisory US Government Resource |
http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html | Third Party Advisory |
http://www.securityfocus.com/bid/91323 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1036181 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
|
Information
Published : 2016-06-25 18:59
Updated : 2019-06-19 09:27
NVD link : CVE-2015-7987
Mitre link : CVE-2015-7987
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
apple
- mac_os_x
- watchos
- iphone_os
- mdnsresponder
- airport_base_station_firmware
- airport_base_station