CVE-2012-0677

EUVD-2012-0709
Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted .m3u playlist.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 94%
Affected Products (NVD)
VendorProductVersion
appleitunes
𝑥
≤ 10.6.1
appleitunes
10.0
appleitunes
10.0.1
appleitunes
10.1
appleitunes
10.1.1
appleitunes
10.1.1.4
appleitunes
10.1.2
appleitunes
10.2
appleitunes
10.2.2.12
appleitunes
10.3
appleitunes
10.3.1
appleitunes
10.4
appleitunes
10.4.0.80
appleitunes
10.4.1
appleitunes
10.4.1.10
appleitunes
10.5
appleitunes
10.5.1
appleitunes
10.5.1.42
appleitunes
10.5.2
appleitunes
10.5.3
appleitunes
10.6
𝑥
= Vulnerable software versions