Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> MacOS X Local Security Checks >> AirPort Update 2006-001 / Security Update 2006-005


Vulnerability Assessment Details

AirPort Update 2006-001 / Security Update 2006-005

Vulnerability Assessment Summary
Checks for the version of the Airport drivers

Detailed Explanation for this Vulnerability Assessment

Summary :

Arbitrary code can be executed on the remote host through the AirPort
Wireless card.

Description :

The remote host is missing a security update regarding the drivers of
the AirPort wireless card.

A possible hacker in the proximity of the target host may exploit this flaw
by sending malformed 802.11 frames to the remote host and cause a stack
overflow resulting in a crash of arbitrary code execution.

Solution :

Apple has released a patch for this issue :
http://docs.info.apple.com/article.html?artnum=304420

Network Security Threat Level:

High / CVSS Base Score : 7.0
(AV:L/AC:L/Au:NR/C:C/I:C/A:C/B:N)

Networks Security ID: 20144

Vulnerability Assessment Copyright: This script is Copyright (C) 2006 Tenable Network Security

Cables, Connectors

Diamond SupraExpress 56e vintage 56k external fax modem with memory made in USA
$126.11
Diamond SupraExpress 56e vintage 56k external fax modem with memory made in USA pictureMEMORY MR16R0828BN1-CK8 800-45 128MB/8, 0202H, 184P
$45.0
MEMORY MR16R0828BN1-CK8 800-45 128MB/8, 0202H, 184P pictureMEMORY HYMR212816H-845 G100 256MB/8 S100 800-45, 0215H, 184P
$75.0
MEMORY HYMR212816H-845 G100 256MB/8 S100 800-45, 0215H, 184P pictureMEMORY 240P T800UA1GSA DDR2-800 1G-128X8 SAMSUNG, USA
$75.0
MEMORY 240P T800UA1GSA DDR2-800 1G-128X8 SAMSUNG, USA picture


Discussions

No Discussions have been posted on this vulnerability.