lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <20060317020540.AE58FAAE4@lists.grok.org.uk> Date: Fri Mar 17 02:28:06 2006 From: pejman.gohari at gmail.com (Pejman GOHARI) Subject: [ADVISORY] | =Thu Mar 16 21:05:35 EST 2006= | Directory Transversal in Apple iTunes [ADVISORY] | =Thu Mar 16 21:05:35 EST 2006= | Directory Transversal in Apple iTunes [+] Background There is no identified background. [+] Description Remote exploitation of a directory traversal vulnerability in Apple iTunes could allow attackers to overwrite or view arbitrary files with user-supplied contents. [+] History 2-14-2006 [+] Vendor Notification. 3-16-2006 [+] Public Disclosure. [+] Workaround This problem has no workarounds. Appendix A Vendor Information http://www.apple.com/itunes/ Appendix B References RFC 6803 Contact Pejman GOHARI pejman.gohari@...il.com CCE CSFA GREM SSP-MPA GIPS CAP SSCP