← Back

CVE-2024-54540

nvd nist
Published: Jan 15, 2025Modified: Jun 17, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

The issue was addressed with improved input sanitization. This issue is fixed in Apple Music 1.5.0.152 for Windows. Processing maliciously crafted web content may disclose internal states of the app.

Affected (1)

Products: Apple: Music
1 product
Music
Configuration A
1 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
Before 1.5.0.152
Running on/withPlatform Versions
Microsoft
Windows 10 22h2
All versions
Microsoft
Windows 10 22h2
All versions
Microsoft
Windows 11 24h2
All versions

References (1)

Source: product-security@apple.com
Vendor Advisory

Timeline

No history available yet.