CVE-2009-0950

Description

Stack-based buffer overflow in Apple iTunes before 8.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an itms: URL with a long URL component after a colon.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
82.109

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Apple iTunes (X64) 8.1.1Windows
Multiple vulnerabilities affected in Apple iTunes 8.1.1Windows
Vulnerabilities CVE-2008-4116,CVE-2009-0016,CVE-2009-0143,CVE-2009-0950 are affected in Apple iTunes (X64) 8.0Windows
Vulnerabilities CVE-2008-4116,CVE-2009-0016,CVE-2009-0143,CVE-2009-0950 are affected in Apple iTunes 8.0Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 4.7.2Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.6Windows
Multiple Vulnerabilities are affected in Apple iTunes (X64) 7.7Windows
Multiple Vulnerabilities are affected in Apple iTunes 4.7.2Windows
Multiple Vulnerabilities are affected in Apple iTunes 7.6Windows
Multiple Vulnerabilities are affected in Apple iTunes 7.7Windows
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.7Mac
Vulnerabilities CVE-2005-1248,CVE-2009-0950,CVE-2009-2817,CVE-2010-1777 are affected in Apple iTunes For Mac 4.2.72Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.6Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.7.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 1.0Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 1.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 1.1.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 1.1.2Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817,CVE-2010-1777 are affected in Apple iTunes For Mac 2.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 2.0.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 2.0.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 2.0.3Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 2.0.4Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817,CVE-2010-1777 are affected in Apple iTunes For Mac 3.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 3.0.1Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 4.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.0.1Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 4.1Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 4.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.5Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 4.8Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 4.9Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 5.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 5.0.1Mac
Vulnerabilities CVE-2008-3434,CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 6.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.3Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.4Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.4.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.0.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.1.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.2.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.5.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.6.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.7.0Mac
Vulnerabilities CVE-2009-0950,CVE-2009-2817,CVE-2010-1777 are affected in Apple iTunes For Mac 4.7.1.30Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.7.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.8.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 4.9.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 5.0.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 6.0.5Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.0.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.0.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.0.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.1.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.1.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.2.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.3.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.3.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.3.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.4Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.4.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.4.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.4.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.4.3Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.5Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.5.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.6Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.6.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.6.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.6.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.7Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.7.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 7.7.1Mac
Vulnerabilities CVE-2009-0950,CVE-2009-2817 are affected in Apple iTunes For Mac 8.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 8.0.0Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 8.0.1Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 8.0.2Mac
Multiple Vulnerabilities are affected in Apple iTunes For Mac 8.1Mac
Vulnerabilities CVE-2005-1248,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 4.2.72Mac
Vulnerabilities CVE-2005-2938,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 4.7.1.30Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 1.0Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 1.1Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 1.1.1Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 1.1.2Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 2.0Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 2.0.1Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 2.0.2Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 2.0.3Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 2.0.4Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 3.0Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950,CVE-2010-1777 are affected in Apple iTunes For Mac 3.0.1Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950 are affected in Apple iTunes For Mac 4.0Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950 are affected in Apple iTunes For Mac 4.1Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950 are affected in Apple iTunes For Mac 4.2Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950 are affected in Apple iTunes For Mac 4.8Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950 are affected in Apple iTunes For Mac 4.9Mac
Vulnerabilities CVE-2008-3434,CVE-2008-3634,CVE-2009-0950 are affected in Apple iTunes For Mac 6.0Mac
Vulnerabilities CVE-2008-4116,CVE-2009-0950 are affected in Apple iTunes For Mac 8.0Mac

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-342817Apple iTunes (X64) (12.13.4.4)
PATCH-342816Apple iTunes (12.13.4.4)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234