Lucene search

K

Airport Base Station Security Vulnerabilities

cve
cve

CVE-2013-5132

Apple AirPort Base Station Firmware before 7.6.4 does not properly handle incorrect frame lengths, which allows remote attackers to cause a denial of service (device crash) by associating with the access point and then sending a short...

6.2AI Score

0.001EPSS

2022-10-03 04:14 PM
22
cve
cve

CVE-2019-8578

A use after free issue was addressed with improved memory management. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code...

9.8CVSS

8.4AI Score

0.009EPSS

2020-10-27 08:15 PM
25
cve
cve

CVE-2019-8588

A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause a system denial of...

7.5CVSS

6.8AI Score

0.002EPSS

2020-10-27 08:15 PM
26
cve
cve

CVE-2019-8581

An out-of-bounds read was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to leak...

9.8CVSS

7.5AI Score

0.004EPSS

2020-10-27 08:15 PM
20
cve
cve

CVE-2019-8572

A null pointer dereference was addressed with improved input validation. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A remote attacker may be able to cause arbitrary code...

9.8CVSS

8.3AI Score

0.009EPSS

2020-10-27 08:15 PM
24
cve
cve

CVE-2019-8580

Source-routed IPv4 packets were disabled by default. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. Source-routed IPv4 packets may be unexpectedly...

7.5CVSS

7.4AI Score

0.001EPSS

2020-10-27 08:15 PM
21
cve
cve

CVE-2019-8575

The issue was addressed with improved data deletion. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. A base station factory reset may not delete all user...

7.5CVSS

6.8AI Score

0.002EPSS

2020-10-27 08:15 PM
28
cve
cve

CVE-2019-7291

A denial of service issue was addressed with improved memory handling. This issue is fixed in AirPort Base Station Firmware Update 7.8.1, AirPort Base Station Firmware Update 7.9.1. An attacker in a privileged position may be able to perform a denial of service...

6.5CVSS

5.8AI Score

0.001EPSS

2020-10-27 08:15 PM
23
cve
cve

CVE-2015-7029

Apple AirPort Base Station Firmware before 7.6.7 and 7.7.x before 7.7.7 misparses DNS data, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified...

9.8CVSS

9.2AI Score

0.013EPSS

2016-07-03 01:59 AM
30
cve
cve

CVE-2015-7988

The handle_regservice_request function in mDNSResponder before 625.41.2 allows remote attackers to execute arbitrary code or cause a denial of service (NULL pointer dereference) via unspecified...

9.8CVSS

9.7AI Score

0.012EPSS

2016-06-26 01:59 AM
29
cve
cve

CVE-2015-7987

Multiple buffer overflows in mDNSResponder before 625.41.2 allow remote attackers to read or write to out-of-bounds memory locations via vectors involving the (1) GetValueForIPv4Addr, (2) GetValueForMACAddr, (3) rfc3110_import, or (4) CopyNSEC3ResourceRecord...

9.8CVSS

9.3AI Score

0.011EPSS

2016-06-26 01:59 AM
35
cve
cve

CVE-2010-0039

The Application-Level Gateway (ALG) on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 modifies PORT commands in incoming FTP traffic, which allows remote attackers to use the device's IP address for arbitrary intranet TCP traffic...

6.8AI Score

0.003EPSS

2010-12-22 03:00 AM
21
cve
cve

CVE-2010-1804

Unspecified vulnerability in the network bridge functionality on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 allows remote attackers to cause a denial of service (networking outage) via a crafted DHCP...

6.4AI Score

0.006EPSS

2010-12-22 03:00 AM
20
cve
cve

CVE-2009-2189

The ICMPv6 implementation on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 does not limit the rate of (1) Router Advertisement and (2) Neighbor Discovery packets, which allows remote attackers to cause a denial of service...

6.5AI Score

0.004EPSS

2010-12-22 03:00 AM
29
cve
cve

CVE-2009-2822

AirPort Utility before 5.5.1 for Apple AirPort Base Station does not properly distribute MAC address ACLs to network extenders, which allows remote attackers to bypass intended access restrictions via an 802.11 authentication...

6.6AI Score

0.015EPSS

2010-04-05 04:30 PM
26
cve
cve

CVE-2008-1012

Unspecified vulnerability in Apple AirPort Extreme Base Station Firmware 7.3.1 allows remote attackers to cause a denial of service (file sharing hang) via a crafted AFP request, related to "input...

6.1AI Score

0.012EPSS

2008-03-20 10:44 AM
26
cve
cve

CVE-2007-0734

fsck, as used by the AirPort Disk feature of the AirPort Extreme Base Station with 802.11n before Firmware Update 7.1, and by Apple Mac OS X 10.3.9 through 10.4.9, does not properly enforce password protection of a USB hard drive, which allows context-dependent attackers to list arbitrary...

6.9AI Score

0.007EPSS

2007-04-10 10:19 PM
24