CFNetwork fails to handle certain HTTP responses properly, causing the_CFNetConnectionWillEnqueueRequests()
function to dereference a NULL pointer, leading to a denial of service condition.
Further information:
- Apple CFNetwork HTTP Response Denial of Service
- Proof of concept: MOAB-25-01-2007.rb and MOAB-25-01-2007.c
1 comment:
AirPort Extreme Update 2007-001
http://www.apple.com/support/downloads/airportextremeupdate2007001.html
Post a Comment