lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060316184027.A55402833@lists.grok.org.uk> Date: Thu Mar 16 19:33:10 2006 From: brian at dessent.net (brian@...sent.net) Subject: -Advisory- $ -Thu Mar 16 13:40:19 EST 2006- $ Buffer Overflow in Apple iTunes -Advisory- $ -Thu Mar 16 13:40:19 EST 2006- $ Buffer Overflow in Apple iTunes ==== o/ 卍 BACKGROUND There is no background. ==== 卍 \o DESCRIPTION It is possible to make Apple iTunes crash or run arbitrary code by the use of malformed input. ==== o/ 卍 VENDOR RESPONSE Apple iTunes was presented no explanation regarding the vulnerability at hand. ==== 卍 \o CVE INFORMATION The Common Vulnerabilities and Exposures (CVE) project has assigned the name CVE-2006-553699 to this issue ==== APPENDIX A VENDOR INFORMATION http://www.apple.com/itunes/