Apple Itunes 12.12 For Windows vulnerabilities
7 known vulnerabilities affecting apple/itunes_12.12_for_windows.
Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH6MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-30928HIGHCVSS 7.82021-09-20
CVE-2021-30928 [HIGH] CVE-2021-30928: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30928
Component: CoreGraphics
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2021-30835HIGHCVSS 7.82021-09-20
CVE-2021-30835 [HIGH] CVE-2021-30835: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30835
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30847HIGHCVSS 7.82021-09-20
CVE-2021-30847 [HIGH] CVE-2021-30847: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30847
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: This issue was addressed with improved checks.
apple
CVE-2021-30849HIGHCVSS 7.82021-09-20
CVE-2021-30849 [HIGH] CVE-2021-30849: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30849
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: Multiple memory corruption issues were addressed with improved memory handling.
apple
CVE-2021-30852HIGHCVSS 8.82021-09-20
CVE-2021-30852 [HIGH] CVE-2021-30852: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30852
Component: Foundation
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2021-30814HIGHCVSS 7.82021-09-20
CVE-2021-30814 [HIGH] CVE-2021-30814: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30814
Component: ImageIO
Impact: Processing a maliciously crafted image may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved input validation.
apple
CVE-2021-30823MEDIUMCVSS 6.52021-09-20
CVE-2021-30823 [MEDIUM] CVE-2021-30823: iTunes 12.12 for Windows
Apple Security Update: About the security content of iTunes 12.12 for Windows
Product: iTunes 12.12 for Windows
CVE: CVE-2021-30823
Component: WebKit
Impact: An attacker in a privileged network position may be able to bypass HSTS
Description: A logic issue was addressed with improved restrictions.
apple