iTunes < 10.6.3 m3u Multiple Buffer Overflow Vulnerabilities (Mac OS X)
High Nessus Plugin ID 59499
SynopsisThe remote host contains a multimedia application that has multiple buffer overflow vulnerabilities.
DescriptionThe version of iTunes installed on the remote Mac OS X host is earlier than 10.6.3 and is, therefore, affected by stack and heap based buffer overflow vulnerabilities. The application does not properly handle 'm3u' playlist files. This error can cause the application to crash or possibly allow arbitrary code execution.
SolutionUpgrade to iTunes 10.6.3 or later.