Apple released iTunes 10.6.3 on the 11-Jun-2012;
| Bulletin | Description | Severity | Impact | Software |
|---|---|---|---|---|
| HT5318 | iTunes 10.6.3 | Remote Code Execution | Moderate | iTunes |
Apple announced a new update for iTunes today. Per APPLE-SA-2012-06-11-1, this update addresses a problem when importing a maliciously crafted m3u playlist within iTunes and a problem within WebKit when visiting a maliciously crafted website. [2]
Fixed in iTunes 10.6.3
* iTunes CVE-ID: CVE-2012-0677
* WebKit CVE-ID: CVE-2012-0672
Evaluation: Update now
LINKS:
[1.] About the security content of iTunes 10.6.3 HT5318 (2012-Jun-11) [Apple]
[2] Apple iTunes Security Update (2012-Jun-11) [SANS]
[1.] About the security content of iTunes 10.6.3 HT5318 (2012-Jun-11) [Apple]
[2] Apple iTunes Security Update (2012-Jun-11) [SANS]










0 Responses to “iTunes 10.6.3”