cbcvebase.
CVE-2012-0677
published 2012-06-12

CVE-2012-0677: Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via…

PriorityP354critical9.3CVSS 2.0
AVNACMAuNCCICAC
EXPLOIT
EPSS
15.36%
96.4th percentile
Heap-based buffer overflow in Apple iTunes before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted .m3u playlist.

Affected

21 ranges
VendorProductVersion rangeFixed in
appleitunes<= 10.6.1
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
appleitunes
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.