Unrated severityNVD Advisory· Published Sep 13, 2012· Updated Jun 16, 2026
CVE-2012-3685
CVE-2012-3685
Description
WebKit, as used in Apple iTunes before 10.7, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-09-12-1.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
21<10.7+ 20 more
- (no CPE)range: <10.7
- cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*range: <=10.6.3
- cpe:2.3:a:apple:itunes:4.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.0.0:-:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.0.1:-:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.1.0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.1.0:-:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.2.0:-:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.5:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.5:*:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.5.0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.5.0:-:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.6:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.6:*:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.6.0:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.6.0:-:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.7:*:*:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.7:*:windows:*:*:*:*:*
- cpe:2.3:a:apple:itunes:4.7.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
8- lists.apple.com/archives/security-announce/2012/Sep/msg00001.htmlnvdVendor Advisory
- support.apple.com/kb/HT5485nvdVendor Advisory
- lists.apple.com/archives/security-announce/2012/Sep/msg00005.htmlnvd
- osvdb.org/85377nvd
- support.apple.com/kb/HT5502nvd
- www.securityfocus.com/bid/55534nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/78542nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17524nvd
News mentions
0No linked articles in our index yet.