In association with heise online

20 July 2010, 12:47

Apple fixes flaw in iTunes

iTunes Logo Apple has released iTunes version 9.2.1 to close a security-relevant vulnerability: In the Windows versions of iTunes up to version 9.2, attackers can use specially crafted itpc: URLs to provoke a buffer overflow and execute arbitrary code. The hole can be exploited remotely, for instance via specially crafted web pages.

Mac users also benefit from the update: for instance, Apple has resolved a problem with encrypted back-ups that occurred when updating iPod touch and iPhone devices to iOS 4.0. Apple also say that initial synchronisation now works more smoothly with certain devices, and that they have disabled obsolete, and therefore incompatible, third-party plug-ins.

See also:

(crve)

  • Share this article
  • Twitter
  • Facebook
  • digg this
  • submit to slashdot
  • post to delicious
  • StumbleUpon
  • submit to reddit







The H open source

The H Security

The H Internet Toolkit