CVE-2008-3630 PUBLISHED CVSS 6.400000095367432 MEDIUM

mDNSResponder in Apple Bonjour for Windows before 1.0.5, when an application uses the Bonjour API for unicast DNS, does not choose random values for transaction IDs or source ports in DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447.

EPSS 1.10% · 78.0th percentile

Risk Scores

CVSS v2.0
6.400000095367432
EPSS Score
1.10%
78.0th percentile

Affected Products

VendorProductVersions
n/an/an/a
applebonjour1.0.4

Timeline

References

Open in Interactive Console →