6.4
CVSSv2

CVE-2008-3630

Published: 11/09/2008 Updated: 30/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

mDNSResponder in Apple Bonjour for Windows prior to 1.0.5, when an application uses the Bonjour API for unicast DNS, does not choose random values for transaction IDs or source ports in DNS requests, which makes it easier for remote malicious users to spoof DNS responses, a different vulnerability than CVE-2008-1447.

Vulnerable Product Search on Vulmon Subscribe to Product

apple bonjour 1.0.4