Apple Airport Base Station Firmware Update vulnerabilities

7 known vulnerabilities affecting apple/airport_base_station_firmware_update.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH3MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2019-8581CRITICALCVSS 9.8≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-8581 [CRITICAL] CWE-125 CVE-2019-8581: An out-of-bounds read was addressed with improved input validation. This issue is fixed in AirPort B An out-of-bounds read was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to leak memory.
cvelistv5nvd
CVE-2019-8572CRITICALCVSS 9.8≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-8572 [CRITICAL] CWE-476 CVE-2019-8572: A null pointer dereference was addressed with improved input validation. This issue is fixed in AirP A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution.
cvelistv5nvd
CVE-2019-8578CRITICALCVSS 9.8≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-8578 [CRITICAL] CWE-416 CVE-2019-8578: A use after free issue was addressed with improved memory management. This issue is fixed in AirPort A use after free issue was addressed with improved memory management. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code execution.
cvelistv5nvd
CVE-2019-8588HIGHCVSS 7.5≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-8588 [HIGH] CWE-476 CVE-2019-8588: A null pointer dereference was addressed with improved input validation. This issue is fixed in AirP A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause a system denial of service.
cvelistv5nvd
CVE-2019-8580HIGHCVSS 7.5≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-8580 [HIGH] CVE-2019-8580: Source-routed IPv4 packets were disabled by default. This issue is fixed in AirPort Base Station Fir Source-routed IPv4 packets were disabled by default. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. Source-routed IPv4 packets may be unexpectedly accepted.
cvelistv5nvd
CVE-2019-8575HIGHCVSS 7.5≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-8575 [HIGH] CVE-2019-8575: The issue was addressed with improved data deletion. This issue is fixed in AirPort Base Station Fir The issue was addressed with improved data deletion. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A base station factory reset may not delete all user information.
cvelistv5nvd
CVE-2019-7291MEDIUMCVSS 6.5≥ unspecified, < 7.9≥ unspecified, < 7.82020-10-27
CVE-2019-7291 [MEDIUM] CVE-2019-7291: A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPor A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. An attacker in a privileged position may be able to perform a denial of service attack.
cvelistv5nvd