← back
CVE-2009-1236

CVE-2009-1236

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 8.4%
exploitation probability
8.4%top 6% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Heap-based buffer overflow in the AppleTalk networking stack in XNU 1228.3.13 and earlier on Apple Mac OS X 10.5.6 and earlier allows remote attackers to cause a denial of service (system crash) via a ZIP NOTIFY (aka ZIPOP_NOTIFY) packet that overwrites a certain ifPort structure member.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.