Description
Unspecified vulnerability in Apple iTunes before 9.1 allows local users to gain console privileges via vectors related to log files, "insecure file operation," and syncing an iPhone, iPad, or iPod touch.
References (4)
Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/61222
Vendor Advisory x_refsource_confirm
http://support.apple.com/kb/HT4105
Third Party Advisory, VDB Entry vdb-entry
signature
x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7604
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/42538
Scores
EPSS
0.0033
EPSS Percentile
25.7%
Details
Status
published
Products (50)
apple/itunes
1.0
apple/itunes
1.1.0
apple/itunes
1.1.1
apple/itunes
1.1.2
apple/itunes
2.0.0
apple/itunes
2.0.1
apple/itunes
2.0.2
apple/itunes
2.0.3
apple/itunes
2.0.4
apple/itunes
3.0.0
... and 40 more
Published
Aug 20, 2010
Tracked Since
Feb 18, 2026