Executive Summary

Informations
NameCVE-2008-2326First vendor Publication2008-09-10
VendorCveLast vendor Modification2011-03-07

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:N/I:N/A:P)
Cvss Base Score5Attack RangeNetwork
Cvss Impact Score2.9Attack ComplexityLow
Cvss Expoit Score10AuthenticationNone Required
Calculate full CVSS 2.0 Vectors scores

Detail

mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows attackers to cause a denial of service (NULL pointer dereference and application crash) by resolving a crafted .local domain name that contains a long label.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-2326

CWE : Common Weakness Enumeration

%idName
100 %CWE-20Improper Input Validation

CPE : Common Platform Enumeration

TypeDescriptionCount
Application1
Os1
Os1
Os1
Os1
Os1

OpenVAS Exploits

DateDescription
2012-02-12Name : Gentoo Security Advisory GLSA 201201-05 (mDNSResponder)
File : nvt/glsa_201201_05.nasl

Open Source Vulnerability Database (OSVDB)

idDescription
48019Apple Bonjour for Windows Bonjour Namespace Provider mDNSResponder Domain Nam...

Nessus® Vulnerability Scanner

DateDescription
2012-01-23Name : The remote Gentoo host is missing one or more security-related patches.
File : gentoo_GLSA-201201-05.nasl - Type : ACT_GATHER_INFO
2008-09-18Name : The remote Windows host has an application that is affected by multiple vulne...
File : bonjour_1_0_5.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

SourceUrl
APPLE http://lists.apple.com/archives/security-announce//2008/Sep/msg00002.html
BID http://www.securityfocus.com/bid/31091
CONFIRM http://support.apple.com/kb/HT2990
SECTRACK http://www.securitytracker.com/id?1020845
VUPEN http://www.vupen.com/english/advisories/2008/2524
XF http://xforce.iss.net/xforce/xfdb/45005

Alert History

If you want to see full details history, please login or register.
0
1
2
3
DateInformations
2016-06-28 23:59:47
  • Multiple Updates
2016-04-26 17:25:04
  • Multiple Updates
2014-02-17 10:45:04
  • Multiple Updates
2013-05-11 00:17:31
  • Multiple Updates