Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qmqm-qvvp-vpmf

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

CoreFoundation, as used in Apple iTunes before 10.5, does not properly perform string tokenization, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.

CoreFoundation, as used in Apple iTunes before 10.5, does not properly perform string tokenization, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.

EPSS

Процентиль: 78%
0.01105
Низкий

Дефекты

CWE-119

Связанные уязвимости

nvd
больше 14 лет назад

CoreFoundation, as used in Apple iTunes before 10.5, does not properly perform string tokenization, which allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.

EPSS

Процентиль: 78%
0.01105
Низкий

Дефекты

CWE-119