Description
Buffer overflow in Apple iTunes 4.7 allows remote attackers to execute arbitrary code via a long URL in (1) .m3u or (2) .pls playlist files.
Affected products
- Apple / itunes4.7 – 4.7
References
- MISChttp://www.kb.cert.org/vuls/id/377368
- MISChttp://securitytracker.com/id?1012839
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/18851
- VENDOR_ADVISORYhttp://secunia.com/advisories/13804
- MISChttp://www.idefense.com/application/poi/display?id=180&type=vulnerabilities
- MAILING_LISThttp://lists.apple.com/archives/security-announce/2005/Jan/msg00000.html
- MISChttp://www.osvdb.org/12833
- MISChttp://www.securityfocus.com/bid/12238