CVE-2024-54540
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Jan 15, 2025
Updated: Jan 16, 2025
CWE ID 79
Summary
CVE-2024-54540 is a vulnerability affecting Apple Music for Windows. The issue was resolved with enhanced input validation in version 1.5.0.152. Maliciously crafted web content can exploit this vulnerability, potentially revealing internal states of the application. This security flaw could pose a risk to user privacy and security. The vulnerability was corrected in the latest Apple Music update for Windows users.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Apple Music
Affected Vendors
- Apple