PT-2010-2290 · Apple · Itunes
Jason Geffner
·
Published
2010-03-31
·
Updated
2017-09-19
·
CVE-2010-0532
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Apple iTunes versions prior to 9.1
Description
A race condition exists in the installation package of Apple iTunes on Windows, allowing local users to gain privileges. This can be achieved by replacing an unspecified file with a Trojan horse.
Recommendations
For Apple iTunes versions prior to 9.1, update to version 9.1 or later to resolve the issue.
Fix
Race Condition
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Itunes