VendorsApplebonjourall versions
Vulnerabilities

Apple Bonjour

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2008-3630
mDNSResponder in Apple Bonjour for Windows before 1.0.5, when an application uses the Bonjour API for unicast DNS, does not choose random values for transaction IDs or source ports in DNS requests, which makes it easier for remote attackers to spoof DNS responses, a different vulnerability than CVE-2008-1447.
Published 2008-09-10 · Modified
6.4EPSS 0.016
CVE-2011-0220
Apple Bonjour before 2011 allows a crash via a crafted multicast DNS packet.
Published 2020-02-05 · Modified
5.5EPSS 0.003
CVE-2008-2326
mDNSResponder in the Bonjour Namespace Provider in Apple Bonjour for Windows before 1.0.5 allows attackers to cause a denial of service (NULL pointer dereference and application crash) by resolving a crafted .local domain name that contains a long label.
Published 2008-09-10 · Modified
5.01 PoCEPSS 0.075