The iTunes ActiveX control in Apple iTunes before 11.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.
References
Link | Resource |
---|---|
http://support.apple.com/kb/HT5936 | Vendor Advisory |
http://lists.apple.com/archives/security-announce/2013/Sep/msg00005.html | Patch Vendor Advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A18997 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2013-09-19 03:27
Updated : 2017-09-18 18:35
NVD link : CVE-2013-1035
Mitre link : CVE-2013-1035
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
apple
- itunes