CVE-2007-0735
Summary
| CVE | CVE-2007-0735 |
|---|---|
| State | PUBLISHED |
| Assigner | mitre |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2007-04-24 17:19:00 UTC |
| Updated | 2026-04-23 00:35:47 UTC |
| Description | Use-after-free vulnerability in Libinfo in Apple Mac OS X 10.3.9 through 10.4.9 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via unspecified vectors involving crafted web pages that trigger certain error conditions that are not properly reported in certain circumstances, resulting in accessing deallocated memory. |
Risk And Classification
Primary CVSS: v2.0 9.3 from [email protected]
AV:N/AC:M/Au:N/C:C/I:C/A:C
Problem Types: NVD-CWE-Other | n/a
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
CompleteIntegrity
CompleteAvailability
CompleteAV:N/AC:M/Au:N/C:C/I:C/A:C
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Apple | Mac Os X | 10.3.9 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.1 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.2 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.3 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.4 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.5 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.6 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.7 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.8 | All | All | All |
| Operating System | Apple | Mac Os X | 10.4.9 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.3.9 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.1 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.2 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.3 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.4 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.5 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.6 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.7 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.8 | All | All | All |
| Operating System | Apple | Mac Os X Server | 10.4.9 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| About Security Update 2007-004 | af854a3a-2127-422b-91ae-364da2661108 | docs.info.apple.com | |
| Apple Mac OS X 2007-004 Multiple Security Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Patch |
| APPLE-SA-2007-04-19 Security Update 2007-004 | af854a3a-2127-422b-91ae-364da2661108 | lists.apple.com | |
| www.osvdb.org/34860 | af854a3a-2127-422b-91ae-364da2661108 | www.osvdb.org | |
| SecurityTracker.com Archives - Mac OS X Bugs Let Remote Users Execute Arbitrary Code and Local Users Gain Elevated Privileges | af854a3a-2127-422b-91ae-364da2661108 | www.securitytracker.com | |
| Webmail - OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | |
| US-CERT Technical Cyber Security Alert TA07-109A -- Apple Updates for Multiple Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.us-cert.gov | US Government Resource |
| Mac OS X Security Update Fixes Multiple Vulnerabilities - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.