Full Disclosure mailing list archives

Advisory 2006-03-11 DoS Vulnerability in Apple iTunes


From: Peter Besenbruch <prb () lava net>
Date: Sat, 11 Mar 2006 22:56:57 -0800

Advisory 2006-03-11 DoS Vulnerability in Apple iTunes

I. BACKGROUND

Advisory marked for immediate release.

II. DESCRIPTION

Sending a specially crafted  malformed  packet to the services communication socket can create a loss of service.

III. HISTORY

This advisory has no history.

IV. WORKAROUND

There are no known workarounds.

V. VENDOR RESPONSE

Apple iTunes has not commented on this issue.

VI. CVE INFORMATION

The Common Vulnerabilities and Exposures (CVE) project has assigned the
name CVE-2006-596484 to this issue.

APPENDIX A. - Vendor Information
http://www.apple.com/itunes/
APPENDIX B. - References
NONE

CONTACT:
*Peter Besenbruch bantown () spam la
*1-888-LOL-WHAT
*CISSP GSAE CCE CEH CSFA GREM SSP-CNSA SSP-MPA GIPS GHTQ GWAS


_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: