Computer Security
[EN] securityvulns.ru
no-pyccku



Apple iTunes for Windows privilege escalation
Published:31.03.2010
Source:BUGTRAQ
SecurityVulns ID:10738
Type:remote
Level:5/10
Description:Application is launched with LocalSystem rights from user-writable folder, allowing DLL spoofing.
Affected:APPLE : iTunes 9.0
CVE:CVE-2010-0532 (Race condition in the installation package in Apple iTunes before 9.1 on Windows allows local users to gain privileges by replacing an unspecified file with a Trojan horse.)
Original documentdocumentjason_(at)_ngssoftware.com, Elevation of Privilege Vulnerability in iTunes for Windows (31.03.2010)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru