CVE-2004-0744Apple MAC OS X vulnerability

2 documents2 sources
Severity
5.0MEDIUMNVD
EPSS
0.9%
top 24.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 23
Latest updateApr 29

Description

The TCP/IP Networking component in Mac OS X before 10.3.5 allows remote attackers to cause a denial of service (memory and resource consumption) via a "Rose Attack" that involves sending a subset of small IP fragments that do not form a complete, larger packet.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDapple/mac_os_x14 versions+13
NVDapple/mac_os_x_server14 versions+13

🔴Vulnerability Details

1
GHSA
GHSA-5h68-87jm-pwv5: The TCP/IP Networking component in Mac OS X before 102022-04-29