CVE-2012-0677

Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted .m3u playlist.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
appleCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
VendorProductVersion
appleitunes
𝑥
≤ 10.6.1
appleitunes
10.0
appleitunes
10.0.1
appleitunes
10.1
appleitunes
10.1.1
appleitunes
10.1.1.4
appleitunes
10.1.2
appleitunes
10.2
appleitunes
10.2.2.12
appleitunes
10.3
appleitunes
10.3.1
appleitunes
10.4
appleitunes
10.4.0.80
appleitunes
10.4.1
appleitunes
10.4.1.10
appleitunes
10.5
appleitunes
10.5.1
appleitunes
10.5.1.42
appleitunes
10.5.2
appleitunes
10.5.3
appleitunes
10.6
𝑥
= Vulnerable software versions