The issue was addressed with improved input sanitization. This issue is fixed in Apple Music 1.5.0.152 for Windows. Processing maliciously crafted web content may disclose internal states of the app.
References
Link | Resource |
---|---|
https://support.apple.com/en-us/122043 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
24 Mar 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
CWE | NVD-CWE-noinfo |
03 Mar 2025, 22:45
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.apple.com/en-us/122043 - Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
First Time |
Microsoft windows 10 22h2
Apple music Microsoft Apple Microsoft windows 11 24h2 |
|
CPE | cpe:2.3:o:microsoft:windows_11_24h2:-:*:*:*:*:*:arm64:* cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_10_22h2:-:*:*:*:*:*:x86:* cpe:2.3:a:apple:music:*:*:*:*:*:*:*:* |
15 Jan 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-15 20:15
Updated : 2025-03-24 18:15
NVD link : CVE-2024-54540
Mitre link : CVE-2024-54540
JSON object : View
Products Affected
apple
- music
microsoft
- windows_11_24h2
- windows_10_22h2
CWE