Site Network: Beskerming.com | Skiifwrald.com | Jongsma & Jongsma

Security for All

Sûnnet Beskerming is a company with a focus and a drive to provide Information Security services for all those who want to stay safe and secure in an online world.

Username: | Password: Contact us to request an account

iTunes - Remote hacker automatic control

Version: 7.3 and prior.
Technical Details:

Arbitrary code execution due to a buffer overflow as a result of opening a malicious media file.

Description:

Apple's iTunes media playing software has been updated to address a vulnerability that could crash the application or allow an attacker to run software of their choice on a victim's system when a malicious music file is opened.

Mitigation:

Update to iTunes version 7.4 at the earliest opportunity.

Updates:

http://www.apple.com/itunes/download/

Source:

http://docs.info.apple.com/article.html?artnum=61798

Exploits:

External Tracking Data:

CVE-ID: CVE-2007-3752


Social bookmark this page