Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Airport_base_station_firmware
(Apple)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 11 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2020-10-27 | CVE-2019-8588 | A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause a system denial of service. | Airport_base_station_firmware | 7.5 | ||
2020-10-27 | CVE-2019-8581 | An out-of-bounds read was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to leak memory. | Airport_base_station_firmware | 9.8 | ||
2020-10-27 | CVE-2019-8580 | Source-routed IPv4 packets were disabled by default. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. Source-routed IPv4 packets may be unexpectedly accepted. | Airport_base_station_firmware | 7.5 | ||
2020-10-27 | CVE-2019-8578 | A use after free issue was addressed with improved memory management. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution. | Airport_base_station_firmware | 9.8 | ||
2020-10-27 | CVE-2019-8575 | The issue was addressed with improved data deletion. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A base station factory reset may not delete all user information. | Airport_base_station_firmware | 7.5 | ||
2020-10-27 | CVE-2019-8572 | A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution. | Airport_base_station_firmware | 9.8 | ||
2020-10-27 | CVE-2019-7291 | A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. An attacker in a privileged position may be able to perform a denial of service attack. | Airport_base_station_firmware | 6.5 | ||
2016-06-25 | CVE-2015-7988 | The handle_regservice_request function in mDNSResponder before 625.41.2 allows remote attackers to execute arbitrary code or cause a denial of service (NULL pointer dereference) via unspecified vectors. | Airport_base_station_firmware, Iphone_os, Mac_os_x, Mdnsresponder, Watchos | 9.8 | ||
2016-06-25 | CVE-2015-7987 | Multiple buffer overflows in mDNSResponder before 625.41.2 allow remote attackers to read or write to out-of-bounds memory locations via vectors involving the (1) GetValueForIPv4Addr, (2) GetValueForMACAddr, (3) rfc3110_import, or (4) CopyNSEC3ResourceRecord function. | Airport_base_station_firmware, Iphone_os, Mac_os_x, Mdnsresponder, Watchos | 9.8 | ||
2016-07-02 | CVE-2015-7029 | Apple AirPort Base Station Firmware before 7.6.7 and 7.7.x before 7.7.7 misparses DNS data, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. | Airport_base_station_firmware | 9.8 |