CVE-2012-3632: Buffer Overflow
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-09-12-1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3632?
CVE-2012-3632 has a high severity rating due to its potential for remote code execution and denial of service.
How do I fix CVE-2012-3632?
To fix CVE-2012-3632, users should update their Apple iTunes software to the latest version that includes the security patch.
What versions of iTunes are affected by CVE-2012-3632?
CVE-2012-3632 affects Apple iTunes versions before 10.7 on both Mac and Windows platforms.
Can CVE-2012-3632 be exploited remotely?
Yes, CVE-2012-3632 can be exploited remotely through a crafted website that leads to memory corruption.
What type of vulnerabilities does CVE-2012-3632 fall under?
CVE-2012-3632 falls under code execution and denial of service vulnerabilities.