First published: Wed Mar 31 2010(Updated: )
Race condition in the installation package in Apple iTunes before 9.1 on Windows allows local users to gain privileges by replacing an unspecified file with a Trojan horse.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iTunes for Windows | <=9.0.3 | |
Apple iTunes for Windows | =9.0 | |
Apple iTunes for Windows | =9.0.0 | |
Apple iTunes for Windows | =9.0.1 | |
Apple iTunes for Windows | =9.0.2 | |
Microsoft Windows 7 | ||
Microsoft Windows Vista | ||
Microsoft Windows XP |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-0532 is classified as a high severity vulnerability due to its ability to allow local users to gain elevated privileges.
To mitigate CVE-2010-0532, users should upgrade to Apple iTunes version 9.1 or later.
CVE-2010-0532 affects users of Apple iTunes versions prior to 9.1 on Windows operating systems.
CVE-2010-0532 is a race condition vulnerability that can be exploited to execute unauthorized actions.
CVE-2010-0532 cannot be exploited remotely as it requires local access to the affected system.