Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-3752

EPSS 16.55% · P95
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-3752

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Heap-based buffer overflow in Apple iTunes before 7.4 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via crafted album cover art in the covr atom of an MP4/AAC file.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apple iTunes畸形音乐文件处理堆溢出漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apple iTunes是一款媒体播放程序。 iTunes在处理音乐专辑封面时存在堆溢出漏洞,远程攻击者可能利用此漏洞控制用户系统。 如果用户受骗打开了恶意的音乐文件就可以触发这个溢出,导致播放器意外终止或执行任意代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-3752

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-3752

Please Login to view more intelligence information

Same Patch Batch · n/a · 2007-09-06 · 21 CVEs total

CVE-2007-4733Aztech DSL 权限许可和访问控制漏洞
CVE-2007-4742Claroline 输入验证漏洞
CVE-2007-4741Claroline 跨站脚本攻击漏洞
CVE-2007-4740Telecom Italy Alice Messenger 权限许可和访问控制漏洞
CVE-2007-4739reprepro更新代码库签名验证绕过安全限制漏洞
CVE-2007-4738SpeedTech STPHPLib STPHPLIB_DIR Parameter 多个远程文件包含漏洞
CVE-2007-4737SpeedTech STPHPLibrary 代码注入漏洞
CVE-2007-4736CartKeeper CKGold Shopping Cart SQL注入漏洞
CVE-2007-4735Virtual DJ M3U文件本地栈溢出漏洞
CVE-2007-4734OtsTurntables M3U文件本地栈溢出漏洞
CVE-2007-3913Gforge 未明SQL注入漏洞
CVE-2007-4732Sun Solaris 输入验证漏洞
CVE-2004-2685@Youngzsoft Youngzsoft CCProxy 缓冲区溢出漏洞
CVE-2007-4748PPStream PowerPlayer.DLL ActiveX控件缓冲区溢出漏洞
CVE-2007-4747Cisco Video Surveillance IP Gateway telnet服务远程认证漏洞
CVE-2007-4746Cisco Video Surveillance IP Gateway 权限提升认证漏洞
CVE-2007-4745Mambo Site Server 跨站脚本攻击漏洞
CVE-2007-4744anyInventory environment.php 远程文件包含漏洞
CVE-2007-4743MIT Kerberos 5 KAdminD服务程序SVCAuth_GSS_Validate远程栈溢出漏洞
CVE-2007-4472Broderbund 3DGreetings Player ActiveX控件多个缓冲区溢出漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2007-3752

No comments yet


Leave a comment