CVE-2007-4702Apple MAC OS X vulnerability

3 documents3 sources
Severity
9.3CRITICALNVD
EPSS
0.9%
top 24.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 15
Latest updateMay 1

Description

The Application Firewall in Apple Mac OS X 10.5, when "Block all incoming connections" is enabled, does not prevent root processes or mDNSResponder from accepting connections, which might allow remote attackers or local root processes to bypass intended access restrictions.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages2 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9p3q-ppjf-98hp: The Application Firewall in Apple Mac OS X 102022-05-01
CVEList
CVE-2007-4702: The Application Firewall in Apple Mac OS X 102007-11-15
CVE-2007-4702 — Apple MAC OS X vulnerability | cvebase