CVE-2003-0882Apple MAC OS X vulnerability

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
0.5%
top 34.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 3
Latest updateApr 29

Description

Mac OS X before 10.3 initializes the TCP timestamp with a constant number, which allows remote attackers to determine the system's uptime via the ID field in a TCP packet.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDapple/mac_os_x10.3

Patches

🔴Vulnerability Details

1
GHSA
GHSA-v69h-hj75-qrqr: Mac OS X before 102022-04-29

📋Vendor Advisories

1
Red Hat
jabberd: DoS via the XML "billion laughs attack"2011-05-31