Apple · Itunes · CVE-2009-0016
**Name of the Vulnerable Software and Affected Versions**
Apple iTunes versions prior to 8.1
**Description**
The issue allows remote attackers to cause a denial of service, resulting in an infinite loop, by sending a Digital Audio Access Protocol (DAAP) message with a crafted `Content-Length` header.
**Recommendations**
For versions prior to 8.1, update to version 8.1 or later to resolve the issue.