KLA11580
Multiple vulnerabilities in Apple iTunes

Обновлено: 03/06/2020
Дата обнаружения
07/09/2019
Уровень угрозы
Critical
Описание

Multiple vulnerabilities were found in Apple iTunes. Malicious users can exploit these vulnerabilities to execute arbitrary code, perform cross-site scripting attack.

Below is a complete list of vulnerabilities:

  1. Vulnerabilitiy in WebKit can be exploited remotely via specially crafted text file to execute arbitrary code;
  2. Vulnerabilitiy in WebKit can be exploited remotely via specially crafted web content to perform cross-site scripting attacks;
  3. Vulnerabilitiy in UIFoundation can be exploited remotely via specially crafted text file to execute arbitrary code;
Пораженные продукты

Apple iTunes earlier than 12.10.1

Решение

Update to the latest version
Download iTunes

Первичный источник обнаружения
HT210635
Оказываемое влияние
?
ACE 
[?]

XSS/CSS 
[?]
Связанные продукты
Apple iTunes
CVE-IDS
Узнай статистику распространения уязвимостей в твоем регионе