Critical security update released for iTunes

Apple’s policy of limiting its apps and services to its own ecosystem is no secret. For example, while iMessage can only be used on devices with the iOS platform, it does not support the Android operating system, despite all the criticism and even calls from Google itself.

However, since Apple’s devices are more expensive compared to the devices of rival brands both in Turkey and around the world, not every user can buy every product. For example, a person using an iPhone can have a Windows computer. If the Mac can’t find it even when the phone needs to be connected to the PC, it wants to get the job done on Windows.

Apple didn’t forget the iTunes app for Windows

In this context, we can say that it is a must for iPhone or iPad users. iTunes on Windows platform is also supported. Although Apple does not show the same interest in the Mac version of the application, it adds a few innovations and fixes bugs with the updates it releases periodically.


100 hotkeys to speed up your work in Windows 10

Hotkeys allow you to quickly get things done in the Windows 10 operating system. We have listed the shortcut keyboard keys that will speed you up on the computer.

One of these updates was released recently. iTunes for Windows 12.12.4 While the version does not bring any new features, it eliminates the security errors detected in the application.

According to the information in Apple’s official support document, iTunes for Windows version 12.12.4 includes:

AppleGraphicsControl

  • Related operating systems: Windows 10 and later
  • Impact: Processing a maliciously crafted image may lead to arbitrary code execution.
  • Description: A memory corruption issue was addressed with improved input validation.
  • CVE-2022-26751: Michael DePlante of the Trend Micro Day Initiative.

ImageIO

  • Related operating systems: Windows 10 and later
  • Impact: A remote attacker may be able to cause unexpected application termination or arbitrary code execution.
  • Description: An integer overflow was addressed with improved input validation.
  • CVE-2022-26711: Finding of Blacksun Hackers Club working with Trend Micro Zero Day Initiative.

iTunes

  • Related operating systems: Windows 10 and later
  • Impact: A local attacker may be able to escalate their privileges.
  • Description: A logic issue was addressed with improved state management.
  • CVE-2022-26774: Sai Wynn Myat

Mobile Device Service

  • Related operating systems: Windows 10 and later
  • Impact: An application may delete files without permission.
  • Description: A logic issue was addressed with improved state management.
  • CVE-2022-26773: Sai Wynn Myat

WebKit

  • Related operating systems: Windows 10 and later
  • Impact: Processing maliciously crafted web content may lead to arbitrary code execution.
  • WebKit Bugzilla: 238171
    CVE-2022-26717: Jeonghoon Shin of Theori

You can download the iTunes app for Windows from the Microsoft Store or directly from Apple’s website.

source site-32