|
|
|
|
| |
Credit:
The information has been provided by ZDI.
The original article can be found at: http://www.zerodayinitiative.com/advisories/ZDI-06-020.html
|
| |
Vulnerable Systems:
* iTunes version 6.0.4 and prior
Immune Systems:
* iTunes version 6.0.5
The specific flaw exists during the processing of malicious AAC media files such as those with extensions .M4A and .M4P. During the parsing of the sample table size atom (STSZ), a malformed 'sample_size_table' value can trigger an integer overflow leading to an exploitable memory corruption and allow attackers to execute arbitrary code.
Vendor Status:
"iTunes 6.0.5 addresses this issue by improving the validation checks used when loading AAC files. iTunes 6.0.5 is freely available from http://www.apple.com/itunes/download/. "
CVE Information:
CVE-2006-1467
Disclosure Timeline:
2006.04.03 - Digital Vaccine released to TippingPoint customers
2006.04.07 - Vulnerability reported to vendor
2006.06.29 - Coordinated public release of advisory
|
|
|
|
|