cbcvebase.
CVE-2011-0191
published 2011-03-03

CVE-2011-0191: Buffer overflow in LibTIFF 3.9.4 and possibly other versions, as used in ImageIO in Apple iTunes before 10.2 on Windows and other products, allows remote…

PriorityP341critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
6.72%
93.1th percentile
Buffer overflow in LibTIFF 3.9.4 and possibly other versions, as used in ImageIO in Apple iTunes before 10.2 on Windows and other products, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted TIFF image with JPEG encoding.

Affected

66 ranges· showing 25
VendorProductVersion rangeFixed in
appleitunes<= 10.1.2
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes

CVSS provenance

nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv9.3CRITICAL
vendor_debian9.3CRITICAL
vendor_redhat9.3CRITICAL
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.