WebKit security flaws haunt Apple's iTunes
Summary: The vulnerabilities could be exploited to launch remote code execution attacks if a user simply opens an image file or surfs to a rigged Web site.
Apple has shipped a critical security patch for its iTunes media player to fix several gaping security holes that expose Windows users to hacker attacks.
The vulnerabilities could be exploited to launch remote code execution attacks if a user simply opens an image file or surfs to a rigged Web site. The update applies to Windows 7, Windows Vista and Windows XP machines.
In all, the new iTunes 9.2 fixes 40 documented vulnerabilities, most affecting the WebKit rendering engine. The WebKit vulnerabilities are the same that affected Apple's Safari browser.
Here are the details on the iTunes vulnerabilities:
- ColorSync (CVE-2009-1726) -- A heap buffer overflow exists in the handling of images with an embedded ColorSync profile. Opening a maliciously crafted image with an embedded ColorSync profile may lead to an unexpected application termination or arbitrary code execution. This issue is addressed through improved validation of ColorSync profiles. This issue affects Windows 7, Vista, XP SP2 or later.
- ImageIO (CVE-2010-1411) -- Multiple integer overflows in the handling of TIFF files may result in a heap buffer overflow. Opening a maliciously crafted TIFF file may lead to an unexpected application termination or arbitrary code execution. The issues are addressed through improved bounds checking. Affects Windows 7, Vista, XP SP2 or later.
Kick off your day with ZDNet's daily email newsletter. It's the freshest tech news and opinion, served hot. Get it.
Talkback
As if we needed another reason to avoid iTunes...
RE: WebKit security flaws haunt Apple's iTunes
You know... It's pretty hard to make anything that works right on Windows, and if Apple can't do it, likely nobody can.
RE: WebKit security flaws haunt Apple's iTunes
RE: WebKit security flaws haunt Apple's iTunes
RE: WebKit security flaws haunt Apple's iTunes
O RLY...?
I've got plenty of software on my Windows machines that works right. And NONE of it has an Apple logo.
Maybe the whole point of Apple's Windows based software efforts is designed to lure you into buying a Mac. After all, iTunes, Quicktime and Safari all run better in their native environment. In other words, Apple's programmers make the Windows based software suck on purpose. "Oh dear, your system got PWNED? Sorry to hear that. Get a Mac - it's safe."
Gotta wonder exactly how many of these vulnerabilities exist on the OSX versions...
This wouldn't happen if they didn't tie their browser to their media player
Oh, wait, that is only the case when it happens to IE and Windows. Right.
Cue the double standards...
RE: WebKit security flaws haunt Apple's iTunes
Oh please.
First of all, why should Apple not reuse code? Seems like a great idea to me.
Second, they did not embed "Safari" into iTunes - they use the WebKit. WebKit is a separate open-source project. Safari is Apple's closed product that also happens to use WebKit.
No double standards here, NZ. See ya.
Yes, there is a HUGE double standard
[i]First of all, why should Apple not reuse code?[/i]
Why shouldn't MS reuse code? If they have a great HTML rendering engine, why not reuse it throughout Windows?
Cue the double standards...
[i]Second, they did not embed "Safari" into iTunes - they use the WebKit.[/i]
Likewise, MS never embedded IE into Windows, they reused Trident, the rendering engine.
Cue the double standards...
RE: WebKit security flaws haunt Apple's iTunes
RE: WebKit security flaws haunt Apple's iTunes
Its called Cross-platform development tools, not cross-platform programs. Your facts are mixed.
& no body is forcing you to install iTunes on Windows
RE: WebKit security flaws haunt Apple's iTunes
RE: WebKit security flaws haunt Apple's iTunes
But, but... Oh dang - you're right - I'm feeding the trolls... Sorry!
But just one more thing! :-)
Actually I was one of possibly the few that agreed that Microsoft should darn well be able to embed a browser in their OS if they wanted to! Heck ChromeOS is going to basically be a browser/OS.
What I objected to was that MS using their monopoly power to warp web standards so that only MS's browser *worked*. That is essentially what the European Union was getting at - I think they just went about it the wrong way (but possibly the only way available).
RE: WebKit security flaws haunt Apple's iTunes
Er.. Ok... So if I go out and buy a shiny new Apple iPhone, exactly HOW am I supposed to activate the bloody thing without having iTunes installed? Or for that matter, if I have an iPod, how do I get my media files onto it without iTunes?
You're kinda stuck with the POS if you wanna use their devices.
RE: WebKit security flaws haunt Apple's iTunes
Here you are again! showing how ignorant you are. iTunes built on Safari!!??? Why you are commenting on something clearly you have no idea about? Just like when you said that Mac OS X is built on PDF.
iTunes is built on Webkit, Safari is not Webkit, its built on Webkit.
& your comparing an Application like an iTunes with an OS like Windows??!!
Seriously you are amusing me. When i saw the Article i knew that i'll find you commenting something funny.
Gosh i like the success of Apple for one reason, to enjoy Its affect on you & reading your hilarious comments
Links please!!!
[i]iTunes built on Safari!!???[/i]
Quote me or apologize for lying.
[i]iTunes is built on Webkit, Safari is not Webkit, its built on Webkit[/i]
Yes, [b]that[/b] was to trap all you double standards people who said IE was embedded into Windows. Windows used Trident. IE could always be removed.
[i]your comparing an Application like an iTunes with an OS like Windows??!![/i]
Yes. You got a problem with that?
RE: WebKit security flaws haunt Apple's iTunes
Please! by all means! Explain to me how is Safari embedded to iTunes.
Saying that Safari is embedded with iTunes, to me is like saying that iTunes is built on Safari or the otherwise
Now don't forget that it was you who claimed that Safari is embedded with iTunes so the responsibility of proof lies on you, So Links please!!!
You clearly don't know whats the different between an OS and an Application don't you?
Yet again are mixing between the both. Windows don't use Trident. Its IE thats built on Trident
& IE wasn't removable till MS was forced by court to make IE removable. & Guess what! its still not removable, MS made to allow the user to hide it but not completely uninstall it.
& Yes! I do have a problem with you comparing an application with an OS like Windows or any other OS. They are not the same.
Compare Apples with Apples not with Orange
Maan! your Apple's hate is really so fun
OS-X is built on PDF! lol :D
http://arstechnica.com/wankerdesk/3q02/wwdc-622.html
So this isn't NonZealot speaking lies, here it is in print for your own glossy eyeballs to read! .....and weep! ;)
Talk about cueing double standards--are YOU ever guilty!
RE: WebKit security flaws haunt Apple's iTunes