MEDIUM · 5.0

CVE-2008-2326

mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows attackers to cause a denial of service (NULL pointer dereference and application crash) by resolving a ...

Vulnerability Description

mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows attackers to cause a denial of service (NULL pointer dereference and application crash) by resolving a crafted .local domain name that contains a long label.

CVSS Score

5.0

MEDIUM

AV:N/AC:L/Au:N/C:N/I:N/A:P
Confidentiality
NONE
Integrity
NONE
Availability
PARTIAL

Affected Products

VendorProductVersions
AppleBonjour1.0.4
MicrosoftWindows-Ntxp
MicrosoftWindows 2000-
MicrosoftWindows 2003 Server-
MicrosoftWindows Vista-
MicrosoftWindows Xp-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2008-2326?

CVE-2008-2326 is a vulnerability with a CVSS score of 5.0 (MEDIUM). mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows attackers to cause a denial of service (NULL pointer dereference and application crash) by resolving a ...

How severe is CVE-2008-2326?

CVE-2008-2326 has been rated MEDIUM with a CVSS base score of 5.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2008-2326?

Check the references section above for vendor advisories and patch information. Affected products include: Apple Bonjour, Microsoft Windows-Nt, Microsoft Windows 2000, Microsoft Windows 2003 Server, Microsoft Windows Vista.