First published: Mon May 16 2005(Updated: )
Buffer overflow in Apple iTunes before 4.8 allows remote attackers to execute arbitrary code via a crafted MPEG4 file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iTunes for Windows | =4.2.72 | |
Apple iTunes for Windows | =4.5 | |
Apple iTunes for Windows | =4.6 | |
Apple iTunes for Windows | =4.7 | |
Apple iTunes for Windows | =4.7.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-1248 is considered to have a high severity due to the potential for remote code execution.
To mitigate CVE-2005-1248, upgrade to a version of Apple iTunes that is 4.8 or later.
CVE-2005-1248 affects Apple iTunes versions 4.2.72 through 4.7.1.
CVE-2005-1248 is a buffer overflow vulnerability that can lead to arbitrary code execution.
Any users of vulnerable versions of Apple iTunes prior to 4.8 may be affected by CVE-2005-1248.