SecurityTeam US
 
 Welcome to SecurityTeam US
 Monday, February 06 2012 @ 12:33 PM EST

Apple iTunes Playlist Handling Buffer Overflow Vulnerability

   
AppleSean de Regge has reported a vulnerability in iTunes, which can be exploited by malicious people to compromise a user's system.

The vulnerability is caused due to a boundary error within the handling of .m3u and .pls playlists. This can be exploited to cause a buffer overflow via a specially crafted playlist.

Successful exploitation may allow execution of arbitrary code.

SOFTWARE:
iTunes 4.x

SOLUTION:
Update to version 4.7.1.
http://www.apple.com/support/downloads/itunes471.html

PROVIDED AND/OR DISCOVERED BY:
Sean de Regge

VERIFY ADVISORY:
http://secunia.com/advisories/13804/

Secunia Security Advisories

 

What's Related

Story Options

Apple iTunes Playlist Handling Buffer Overflow Vulnerability | 0 comments | Create New Account
The following comments are owned by whomever posted them. This site is not responsible for what they say.
 Copyright © 2012 SecurityTeam US
 All trademarks and copyrights on this page are owned by their respective owners.
  Get Firefox!
Dedicated Servers
Created this page in 0.17 seconds