iTunes vulnerable again

Sep 7, 2007 08:54 GMT  ·  By

Apple is one of the top companies in the world because it created several famous products such as iPods, the operating system Mac OS X and iMacs. But Apple is not only a company focused on hardware products and on devices as it also designed several top applications such as the web browser Safari and the multimedia player iTunes. This last one became very popular due to its functions, being accessible for all the Mac and the Windows users. But what's more important is that every once in a while, iTunes is brought in the spotlights after the security companies discover more or less critical vulnerabilities that can harm users' computers.

Today, security company Secunia published a new alert after a highly critical security hole was found in iTunes. According to the report, the flaw can be used by an attacker to compromise an affected system with a version of YouTube older than 7.4. "The vulnerability is caused due to a boundary error when processing the "covr" atom in media files. This can be exploited to cause a heap based buffer overflow via a specially crafted cover art embedded in a media file," Secunia mentioned.

The only solution to avoid a successful exploitation of the vulnerability is to update your iTunes to version 7.4 which was released a few days ago. If you're currently using the Mac version of the application, you can use the 'Check for updates' function of the operating system in order to avoid installing the program manually.

Also, you can download the latest version of iTunes straight from Softpedia. Click HERE for the Windows version and HERE for the Mac version. In addition, check for updates periodically as the Cupertino company Apple releases updates every once in a while in order to fix the recently reported vulnerabilities or to bring new improvements to the operating system.