Apple iTunes < 9.1 Multiple Vulnerabilities (credentialed check)

This script is Copyright (C) 2010-2017 Tenable Network Security, Inc.


Synopsis :

The remote host contains an application that is affected by multiple
vulnerabilities.

Description :

The version of Apple iTunes installed on the remote Windows host is
older than 9.1. Such versions may be affected by multiple
vulnerabilities :

- A buffer underflow in ImageIO's handling of TIFF images
may lead to an application crash or arbitrary code
execution. (CVE-2009-2285)

- An integer overflow in the applications's handling of
images with an embedded color profile may lead to an
application crash or arbitrary code execution.
(CVE-2010-0040)

- An uninitialized memory access issue in ImageIO's
handling of BMP images may result in sending data from
Safari's memory to a website under an attacker's
control. (CVE-2010-0041)

- An uninitialized memory access issue in ImageIO's
handling of TIFF images may result in sending data from
Safari's memory to a website under an attacker's
control. (CVE-2010-0042)

- A memory corruption issue in the application's handling
of TIFF images may lead to an application crash or
arbitrary code execution. (CVE-2010-0043)

- A race condition during the installation process may
allow a local user modify a file that is then executed
with SYSTEM privileges. (CVE-2010-0532)

- A path searching issue may allow code execution if an
attacker can place a specially crafted DLL in a
directory and have a user open another file using
iTunes in that directory. (CVE-2010-1795)

See also :

http://support.apple.com/kb/HT4105
http://lists.apple.com/archives/security-announce/2010/Mar/msg00003.html
http://www.securityfocus.com/advisories/19388

Solution :

Upgrade to Apple iTunes 9.1 or later.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 7.7
(CVSS2#E:F/RL:OF/RC:ND)
Public Exploit Available : true

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now