Vulnerabilities > Apple > Itunes > 12.10.2

DATE CVE VULNERABILITY TITLE RISK
2020-04-01 CVE-2020-3895 Out-of-bounds Write vulnerability in Apple products
A memory corruption issue was addressed with improved memory handling.
network
apple CWE-787
critical
9.3
2020-04-01 CVE-2020-3894 Race Condition vulnerability in Apple products
A race condition was addressed with additional validation.
network
high complexity
apple CWE-362
2.6
2020-04-01 CVE-2020-3887 Unspecified vulnerability in Apple products
A logic issue was addressed with improved restrictions.
network
apple
4.3
2020-04-01 CVE-2020-3885 Always-Incorrect Control Flow Implementation vulnerability in Apple products
A logic issue was addressed with improved restrictions.
network
apple CWE-670
4.3
2020-02-27 CVE-2020-3878 Out-of-bounds Read vulnerability in Apple products
An out-of-bounds read was addressed with improved input validation.
network
apple CWE-125
6.8
2020-02-27 CVE-2020-3868 Out-of-bounds Write vulnerability in multiple products
Multiple memory corruption issues were addressed with improved memory handling.
network
apple opensuse CWE-787
critical
9.3
2020-02-27 CVE-2020-3867 Cross-site Scripting vulnerability in multiple products
A logic issue was addressed with improved state management.
4.3
2020-02-27 CVE-2020-3865 Out-of-bounds Write vulnerability in multiple products
Multiple memory corruption issues were addressed with improved memory handling.
6.8
2020-02-27 CVE-2020-3862 A denial of service issue was addressed with improved memory handling.
network
apple opensuse
4.3
2020-02-27 CVE-2020-3861 Missing Authorization vulnerability in Apple Itunes
The issue was addressed with improved permissions logic.
local
low complexity
apple CWE-862
3.6