Computer Security
[EN] securityvulns.ru no-pyccku


Apple iTunes for Windows privilege escalation
Published:31.03.2010
Source:
SecurityVulns ID:10738
Type:remote
Threat Level:
5/10
Description:Application is launched with LocalSystem rights from user-writable folder, allowing DLL spoofing.
Affected:APPLE : iTunes 9.0
CVE:CVE-2010-0532 (Race condition in the installation package in Apple iTunes before 9.1 on Windows allows local users to gain privileges by replacing an unspecified file with a Trojan horse.)
Original documentdocumentjason_(at)_ngssoftware.com, Elevation of Privilege Vulnerability in iTunes for Windows (31.03.2010)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod