Comments on: Apple iTunes security flaw discovered
A vulnerability in software that helps manage iTunes could allow an attacker to launch arbitrary code.
A vulnerability in software that helps manage iTunes could allow an attacker to launch arbitrary code.
January 7, 2010 12:00 PM PST
January 7, 2010 11:31 AM PST
January 7, 2010 11:12 AM PST
Add headlines from CNET News to your homepage or feedreader.
More feeds available in our RSS feed index.
Related quotes
products is as big a fool as you obviously are. We're all
consumers folks, not clan members. We do not owe allegiance to
anyone.
A better response to this issue would be to ask how one actually
exploit the flaw if it is a remotely executable one and the only
remote thing that itunes accesses is the itunes music store? The
only other thing I can think of is the music library sharing
feature which we can all turn off if that's the only other way of
accessing iTunes remotely.
Being merely an educated user and not a Mac genius is there
anyone out there who knows any better?
harmful and addictive.
This firm sells security software. Would be surprised to learn that
they announce that they have found a security flaw? Not me.
problem is to buy their product.
Not proof of exaggeration but reason enough I think for doubting
their intentions.
What version(s) of iTunes does this impact? Have there been any real world reports of security breaches? How exactly are hackers supposed to get into my iTunes to begin with? Some salient details and facts would go a long way to supporting what is at present a somewhat dubious article.
Does this mean - GULP - OS X isn't perfect, after all ?
Havin read the report, it's in the Initial stage. So it'll be interesting to see how this develops.
"Description: A remotely exploitable flaw exists that allows arbitrary code to be executed in the context of the logged in user." - doesn't sound trivial (expecially if the arbitraty code was like "FORMAT C:").
Not yet. Look at original advisory:
Operating Systems Affected:
All Microsoft Operatins Systems.
systems (Mac and Windows)
However, the link to eEye (for the November 17, 2005 iTunes
vulnerability report EEYEB-20051117b) states:
"Operating Systems Affected:
All Microsoft Operatins (sic) Systems"
Now where do you see OS X in that statement?
- test
- by sabot96 November 19, 2005 9:54 AM PST
- test
- Like this Reply to this comment
-
(14 Comments)