CVE-2023-32353: High severity apple Itunes Windows vulnerability
Published May 23, 2023
·Updated
A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for Windows. An app may be able to elevate privileges.
Other sources
iTunes. A logic issue was addressed with improved checks.
— Apple
Credit
Zeeshan Shaikh – Synopsys Cybersecurity Research Center (CyRC)@@bugzzzhunter, ycdxsb@@IIE(VARAS), James Tsz Ko Yeung@@5cript1diot
Affected Software
2 affected componentsFixes available
apple Itunes Windows<12.12.9
apple iTunes for Windows<12.12.9
12.12.9
Event History
May 23, 2023
Data Sourced
via Apple·12:00 AM
DescriptionWeaknessAffected Software
Jun 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-32353.
2
What is the severity of CVE-2023-32353?
The severity of CVE-2023-32353 is high (CVSS score: 7.8).
3
What is affected by CVE-2023-32353?
iTunes 12.12.9 for Windows and Apple macOS Monterey are affected by CVE-2023-32353.
4
How can the vulnerability be fixed?
The vulnerability can be fixed by updating to iTunes 12.12.9 for Windows or Apple macOS Monterey.
5
Is there any additional information available?
Yes, you can find additional information at the following link: [Apple Support - HT213763](https://support.apple.com/en-us/HT213763).