Security Advisory
CVE-2012-4672
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Apple iChat Server does not verify that a request was made for an XMPP Server Dialback response, which allows remote XMPP servers to spoof domains via responses for domains that were not asserted.